*=============================================================|
| Exploit Title: iCMS File Upload Vulnerability
|
| Exploit Author: Ashiyane Digital Security Team
|
| Vendor : https://github.com/idreamsoft/iCMS
|
| Tested on: Kali Linux
|
| Date: 1 /3 / 2017
*=============================================================|
| Vulnerability Path : http://127.0.0.1/iCMS-master/app/ui/common/ueditor/dialogs/scrawl/scrawl.html
| Vulnerability Method :GET
*===========================|
| Vulnerability description
*===:
| This page allows visitors to upload files to the server.
| Various web applications allow users to upload files (such as images, sounds, ...).
*=============================================================|