[+] HTTP File Server - v2.x XSS And File Upload Vulnerability
[-] Found by Angel Injection
[-] Version: N/A
[-] Security -::RISK: high
[-] platforms: php
[-] Download Link: www.rejetto.com/hfs/
أهداء الى
فريق الاسود الحيدرية وفريق الوعد الصادق
For Cross Site Scripting
http://localhost/?search=xss here
For Upload file
http://localhost/~upload "if website accses you to uploading files"
upload your shell as shell.php.jpg after that change it using tamber data
After upload file you will find in
http://localhost/[path]/yourshellname.php.jpg
./Iraqi 4 Ever
//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information