6.4
CVSSv2

CVE-2015-1577

Published: 11/02/2015 Updated: 12/02/2015
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 650
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in u5admin/deletefile.php in u5CMS prior to 3.9.4 allows remote malicious users to write to arbitrary files via a (1) .. (dot dot) or (2) full pathname in the f parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

yuba u5cms

Exploits

u5CMS 393 (deletefilephp) Arbitrary File Deletion Vulnerability Vendor: Stefan P Minder Product web page: wwwyubach Affected version: 393 and 392 Summary: u5CMS is a little, handy Content Management System for medium-sized websites, conference / congress / submission administration, review processes, personalized serial mails, ...
#!/usr/bin/python # Author KAhara MAnhara # Achat 0150 beta7 - Buffer Overflow # Tested on Windows 7 32bit import socket import sys, time # msfvenom -a x86 --platform Windows -p windows/exec CMD=calcexe -e x86/unicode_mixed -b '\x00\x80\x81\x82\x83\x84\x85\x86\x87\x88\x89\x8a\x8b\x8c\x8d\x8e\x8f\x90\x91\x92\x93\x94\x95\x96\x97\x98\x99\x9a\x9b\x ...