Jump to content
YOUR-AD-HERE
HOSTING
TOOLS
992Proxy

Locked WordPress WP Mobile Detector 3.5 Shell Upload


dEEpEst

Recommended Posts

WP Mobile Detector Plugin for WordPress contains a flaw that allows a remote attacker to execute arbitrary PHP code. This flaw exists because the /wp-content/plugins/wp-mobile-detector/resize.php script does contains a remote file include for files not cached by the system already. By uploading a .php file, the remote system will place the file in a user-accessible path. Making a direct request to the uploaded file will allow the attacker to execute the script with the privileges of the web server.

 

[HIDE-THANKS]

This is the hidden content, please

[/HIDE-THANKS]

 

See more >>> http://level23hacktools.com/forum/showthread.php?t=39996

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.