vendor:
AdaptCMS
by:
v3n0m, Yogyacarderlink-Indonesia
N/A
CVSS
N/A
Remote File Inclusion
98
CWE
Product Name: AdaptCMS
Affected Version From: 2.0.1
Affected Version To: 2.0.1
Patch Exists: YES
Related CWE: CVE-2010-2618
CPE: a:adaptcms:adaptcms:2.0.1
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: PHP
2010
AdaptCMS 2.0.1 Beta Released Remote File Inclusion Exploit
This module can be used to exploit Remote File Inclusion in AdaptCMS 2.0.1 or earlier in file /inc/smarty/libs/init.php.
Mitigation:
Ensure that user-supplied input is validated before being used to include files.