# WordPress HT-Poi Plugin Remote File Upload (RFU)
# Risk: High
# Author: Hugo Santiago dos Santos
# Contact: hugo.s@linuxmail.org
# Date: 24/10/2014
# Vendor Homepage: https://github.com/wp-plugins/ht-poi
# Tested on: Windows 7 and Gnu/Linux
# Google Dork: inurl:"/wp-plugins/ht-poi"
# PoC : http://acXXXXXX/wp-content/plugins/HT-Poi/file_upload.php
# Xploit: Just Upload our Shell ;)