Empire CMS 7.5 allows remote attackers to execute arbitrary PHP code via the ftemp parameter in an enews=EditMemberForm action because this code is injected into a memberform.$fid.php file.
References
Link | Resource |
---|---|
http://p0desta.com/2018/12/19/empirecms%E6%9C%80%E6%96%B0%E7%89%88%E5%90%8E%E5%8F%B0%E5%A4%9A%E5%A4%84getshell/ | Exploit Third Party Advisory |
http://p0desta.com/2018/12/19/empirecms%E6%9C%80%E6%96%B0%E7%89%88%E5%90%8E%E5%8F%B0%E5%A4%9A%E5%A4%84getshell/ | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 04:01
Type | Values Removed | Values Added |
---|---|---|
References | () http://p0desta.com/2018/12/19/empirecms%E6%9C%80%E6%96%B0%E7%89%88%E5%90%8E%E5%8F%B0%E5%A4%9A%E5%A4%84getshell/ - Exploit, Third Party Advisory |
Information
Published : 2018-12-20 00:29
Updated : 2024-11-21 04:01
NVD link : CVE-2018-20300
Mitre link : CVE-2018-20300
CVE.ORG link : CVE-2018-20300
JSON object : View
Products Affected
phome
- empirecms
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')