vendor:
Log1 CMS 2.0
by:
EgiX, Adel SBM, sinn3r
N/A
CVSS
N/A
Remote Code Execution
94
CWE
Product Name: Log1 CMS 2.0
Affected Version From: log1 CMS 2.0
Affected Version To: log1 CMS 2.0
Patch Exists: NO
Related CWE: CVE-2011-4825
CPE: a:log1_cms:log1_cms_2.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: PHP
2011
Log1 CMS writeInfo() PHP Code Injection
This module exploits the 'Ajax File and Image Manager' component that can be found in log1 CMS. In function.base.php of this component, the 'data' parameter in writeInfo() allows any malicious user to have direct control of writing data to file data.php, which results in arbitrary remote code execution.
Mitigation:
No mitigation available