Welcome To Security Darknet

Selamat Datang Di Official Security Darknet

Selasa, 27 Oktober 2020

RiteCMS 2.2.1 - Authenticated Remote Code Execution

Tags



RiteCMS 2.2.1 - Authenticated Remote Code Execution

Vendor Homepage: http://ritecms.com/

Version: 2.2.1


Dork:

intext:"Powered By RiteCMS"


1- Go to following url. >> http://(HOST)/cms/

2- Default username and password is admin:admin. We must know login credentials.

3- Go "Filemanager" and press "Upload file" button.

4- Choose your php webshell script and upload it.

shell access?http://target.com/media/yourshell.php


Ref? Rite Cms


Contact : ncdream72@gmail.com


EmoticonEmoticon