Posted by : Muhammad Haseeb Javed Wednesday, December 7, 2011

This is a really effective way of hacking a website. This way is very common and according to some research 10% of sites are vulnerable to this.
 So to start first thing that we need is vulnerable site which can be found from the following dork :


inurl:"Fck/fcklinkgallery.aspx" (for all the sites)
 inurl:"Fck/fcklinkgallery.aspx" site:{domain of site} (for specified attack)

 Now select any site and following page will appear :



NOW Select the third option and type following into the address bar:


javascript:__doPostBack(‘ctlURL$cmdUpload’,”)

NOW IT WILL LOOK LIKE SHOWN BELOW:


Now if you are lucky and site is vulnerable a upload Bar will appear from which you can upload .txt .html or pictures from your computer in to the site.

HOW TO FIND YOUR UPLOADED FILE.


To Get to the file that you have uploaded just goto the domain of the website and put this in the end "portals/0/[Your files name]" e.g " www.blahblah.com/portals/0/a.txt"

I hope you people like it!!!!



Note: Use Google Chrome for this Attack it is DEADLY EFFECTIVE!!!!

{ 5 comments... read them below or Comment }

  1. after uploading how to find our uploaded page....???

    ReplyDelete
  2. after uploading a file what happens explain all plz

    ReplyDelete
  3. i have updated my dear. the file is on the site... re read the article

    ReplyDelete
  4. where to write inurl:"Fck/fcklinkgallery.aspx"

    ReplyDelete

Popular Post

Labels

Blog Archive

- Copyright © _.:Learn To Hack:._ :: Hacking Tutorials :: Warez -Metrominimalist- Powered by Blogger - Designed by Johanes Djogan -