Empire CMS 7.5 allows remote attackers to execute arbitrary PHP code via the ftemp parameter in an enews=EditMemberForm action because this code is injected into a memberform.$fid.php file.
References
Link | Resource |
---|---|
http://p0desta.com/2018/12/19/empirecms%E6%9C%80%E6%96%B0%E7%89%88%E5%90%8E%E5%8F%B0%E5%A4%9A%E5%A4%84getshell/ | Exploit Third Party Advisory |
Configurations
Information
Published : 2018-12-19 16:29
Updated : 2019-02-05 11:52
NVD link : CVE-2018-20300
Mitre link : CVE-2018-20300
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
phome
- empirecms