WordPress Satoshi Themes 2.0 Arbitrary File Upload

Assalamualaikum. :v
Mueheheh...



Kmaren kan baru aja gw Posting, dan ini gw mau posting lage.. buat para fans setia gw✨
Tadi gw sempet baca" di exploit db sama satunya, gw lupa wkwk..
So, langsung aja yak :v

==========================
Google Dork : inurl :/wp-content/themes/satoshi/
-----------------------------------------------
Exploit : /path/wp-content/themes/satoshi/upload-file.php
-----------------------------------------------
Post Type : uploadfile
-----------------------------------------------
Acces File : /wp-content/themes/satoshi/images/file.ext
==========================










Vulnerability ? Look at The Picture Gays...








Gw pake csrf punya Davnisial, :) Thanks








Pilih sc depes lu, lalu klik button upload !








Kalo Muncul "success" berarti terUpload









Sc gw Kek Pan8 link gambar blom gw masukin wkwk...
Cara akses file udh gw taroh diatas, baca aja yang bener. Ntar paham kok. :v



Sekian dari gw, kalo ada salah gw minta maap.
See you Next Time n good bye..


Wassalamu'alaikum