vendor:
MiniBB
by:
Dj7xpl
7.5
CVSS
HIGH
Remote Code Execution
Not mentioned
CWE
Product Name: MiniBB
Affected Version From: 2
Affected Version To: 2.0.5
Patch Exists: NO
Related CWE: Not mentioned
CPE: Not mentioned
Platforms Tested: Not mentioned
Not mentioned
MiniBB 2.0.5 Remote Exploit
This exploit allows an attacker to remotely execute code on a target system running MiniBB version 2.0.5. The vulnerability allows for arbitrary file inclusion, which can be used to read sensitive files or execute malicious code.
Mitigation:
Upgrade to a patched version of MiniBB to prevent this vulnerability. Also, ensure that the application is running on a secure and properly configured server.