mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
905 B
905 B
CVE-2012-6498
Description
Unrestricted file upload vulnerability in index.php in Atomymaxsite 2.5 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file, as exploited in the wild in October 2012.
POC
Reference
- http://thaicert.or.th/alerts/admin/2012/al2012ad025.html
- http://thaicert.or.th/alerts/admin/2012/al2012ad025.html
- http://www.youtube.com/watch?v=CfvTCSS3LGY
- http://www.youtube.com/watch?v=CfvTCSS3LGY
Github
No PoCs found on GitHub currently.