vendor:
Responsive Tourism Website
by:
Tagoletta (Tağmaç)
9,8
CVSS
HIGH
Remote Code Execution (RCE)
89
CWE
Product Name: Responsive Tourism Website
Affected Version From: 3.1
Affected Version To: 3.1
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: MacOS & Windows
2021
Responsive Tourism Website 3.1 – Remote Code Execution (RCE) (Unauthenticated)
This exploit allows an unauthenticated attacker to gain remote code execution on a vulnerable Responsive Tourism Website 3.1. The attacker can bypass the login page by using a SQL injection payload and then upload a malicious PHP shell to the server. The attacker can then access the shell via the URL and execute arbitrary commands on the server.
Mitigation:
Ensure that user input is properly sanitized and validated before being used in SQL queries. Additionally, ensure that the web application is running the latest version of the software and that all security patches are applied.