Clooud version 1.4.0 suffers from a remote shell upload vulnerability.
6cc9857ce5c40cdd57571a7bd60813c1
=======================================================================================================
| # Title : Clooud v1.4.0 - Premium Media Sharing Script unrestricted file upload Vulnerability |
| # Author : indoushka |
| # email : indoushka4ever@gmail.com |
| # Tested on : windows 10 FranASSais V.(Pro) |
| # Version : v1.4.0 |
| # Vendor : http://www.codelist.cc/scripts/2358-clooud-v140-premium-media-sharing-script.html |
| # Dork : http://clooud.tv/ |
========================================================================================================
poc :
[+] Dorking Adegn Google Or Other Search Enggine .
[+] go to upload section : /upload .
[+] choose your file : Ev!l.php & click start upload .
[+] click on thumbnail image .
http://www.zone-h.org/mirror/id/30668713
Greetz :----------------------------------------------------------------------------------------
|
jericho * Larry W. Cashdollar * shadow0075 * djroot.dz *Gjoko 'LiquidWorm' Krstic |
|
================================================================================================