

| Risk |
Local |
| Remote |
| High |
No |
| Yes |
Ppim <= 1.0 (upload/change password) Multiple Vulnerabilities
cript : Ppim v1.0
Download : http://scripts.ringsworld.com/organizers/ppim.zip
By Stack
Poc 1: change password
for change password go to this link
http://localhost/ppim/changepassword.php
writhe your password and confirm it
Poc 2 : upload
http://localhost/ppim/upload.php
you can upload you php shell in this link
after you go here
http://localhost/ppim/shell.php
References:
http://xforce.iss.net/xforce/xfdb/44389
http://www.securityfocus.com/bid/30627
http://www.milw0rm.com/exploits/6231
http://secunia.com/advisories/31424
[ ASCII VERSION ]
|