5
CVSSv2

CVE-2005-0613

Published: 28/02/2005 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 510
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Unknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote malicious users to upload arbitrary files.

Vulnerable Product Search on Vulmon Subscribe to Product

fckeditor fckeditor 2.0_rc2

Exploits

<?php /* --------------------------------------------------------------- Nuke ET <= 34 (fckeditor) Remote Arbitrary File Upload Exploit --------------------------------------------------------------- author: EgiX mail: n0b0d13s[at]gmail[dot]com link: wwwtruzoneorg/ This PoC was written for educational purp ...
#!/usr/bin/php -q -d short_open_tag=on <? echo " InoutMailingListManager <= 31 Command Execution Exploit + Login Retrieve + Advisory by BlackHawk <hawkgotyou@gmailcom> <itablackhawkaltervistaorg> Thanks to rgod for the php code and Marty for the Love "; if ($argc<4) { echo "Usage: php "$argv[0]" Site CMD Host: ...