# Title : Humhub 1.3.13 Unrestricted File Upload Vulnerability
# Author : indoushka
# Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 67.0(32-bit)
# Vendor : https://www.humhub.org/en/download/package/humhub-1.3.13.zip
# Dork : "Propulsé par HumHub"
PoC :
[+] Dorking İn Google Or Other Search Enggine.
[+] Register new user .
[+] go to your profile https://sangrava66.humhub.com/u/admin/user/profile/home Get started and post something bad
[+] /uploads/file/yours.php
# Author : indoushka
# Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 67.0(32-bit)
# Vendor : https://www.humhub.org/en/download/package/humhub-1.3.13.zip
# Dork : "Propulsé par HumHub"
PoC :
[+] Dorking İn Google Or Other Search Enggine.
[+] Register new user .
[+] go to your profile https://sangrava66.humhub.com/u/admin/user/profile/home Get started and post something bad
[+] /uploads/file/yours.php