wordpress fckeditor upload Vunerablity : Upload Your Deface Remotly
This Method also Known as Open Cart OpenCart CMS (Web shop) Exploit, Its a old Vunerablity but many pepoles don't know this ... so i'm publishing here a tutorial here
1- open Google.com and enter Dork:
- inurl:admin/view/javascript/fckeditor/editor/filemanager/connectors/test.html
- nurl:Powered By OpenCart
You'll Got a lot of websites by google, select anyone ... For Example i got this one
- http://www.schoolshopper.com.au/
Then i'll will simply add the vuln URL after the website