mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 01:49:30 +02:00
717 B
717 B
CVE-2018-6881
Description
EmpireCMS 6.6 allows remote attackers to discover the full path via an array value for a parameter to admin/tool/ShowPic.php.
POC
Reference
- https://kongxin.gitbook.io/dedecms-5-7-bug/
- https://kongxin.gitbook.io/dedecms-5-7-bug/
- https://kongxin.gitbook.io/empirecms/
- https://kongxin.gitbook.io/empirecms/
Github
No PoCs found on GitHub currently.