Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6hrq-6p7f-4hj2

Опубликовано: 08 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

Sflog! CMS 1.0 contains an authenticated arbitrary file upload vulnerability in the blog management interface. The application ships with default credentials (admin:secret) and allows authenticated users to upload files via manage.php. The upload mechanism fails to validate file types, enabling attackers to upload a PHP backdoor into a web-accessible directory (blogs/download/uploads/). Once uploaded, the file can be executed remotely, resulting in full remote code execution.

Sflog! CMS 1.0 contains an authenticated arbitrary file upload vulnerability in the blog management interface. The application ships with default credentials (admin:secret) and allows authenticated users to upload files via manage.php. The upload mechanism fails to validate file types, enabling attackers to upload a PHP backdoor into a web-accessible directory (blogs/download/uploads/). Once uploaded, the file can be executed remotely, resulting in full remote code execution.

EPSS

Процентиль: 97%
0.43365
Средний

8.7 High

CVSS4

Дефекты

CWE-434

Связанные уязвимости

nvd
6 месяцев назад

Sflog! CMS 1.0 contains an authenticated arbitrary file upload vulnerability in the blog management interface. The application ships with default credentials (admin:secret) and allows authenticated users to upload files via manage.php. The upload mechanism fails to validate file types, enabling attackers to upload a PHP backdoor into a web-accessible directory (blogs/download/uploads/). Once uploaded, the file can be executed remotely, resulting in full remote code execution.

EPSS

Процентиль: 97%
0.43365
Средний

8.7 High

CVSS4

Дефекты

CWE-434