mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-16 20:27:21 +00:00
47 lines
2.0 KiB
Markdown
47 lines
2.0 KiB
Markdown
|
|
### [CVE-2004-1315](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1315)
|
||
|
|

|
||
|
|

|
||
|
|

|
||
|
|
|
||
|
|
### Description
|
||
|
|
|
||
|
|
viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by double-encoding the highlight value so that special characters are inserted into the result, which is then processed by PHP exec, as exploited by the Santy.A worm.
|
||
|
|
|
||
|
|
### POC
|
||
|
|
|
||
|
|
#### Reference
|
||
|
|
No PoCs from references.
|
||
|
|
|
||
|
|
#### Github
|
||
|
|
- https://github.com/AnyMaster/EQGRP
|
||
|
|
- https://github.com/Badbug6/EQGRP
|
||
|
|
- https://github.com/CKmaenn/EQGRP
|
||
|
|
- https://github.com/CybernetiX-S3C/EQGRP_Linux
|
||
|
|
- https://github.com/Drift-Security/Shadow_Brokers-Vs-NSA
|
||
|
|
- https://github.com/IHA114/EQGRP
|
||
|
|
- https://github.com/Mofty/EQGRP
|
||
|
|
- https://github.com/MrAli-Code/EQGRP
|
||
|
|
- https://github.com/Muhammd/EQGRP
|
||
|
|
- https://github.com/Nekkidso/EQGRP
|
||
|
|
- https://github.com/Ninja-Tw1sT/EQGRP
|
||
|
|
- https://github.com/R3K1NG/ShadowBrokersFiles
|
||
|
|
- https://github.com/Soldie/EQGRP-nasa
|
||
|
|
- https://github.com/antiscammerarmy/ShadowBrokersFiles
|
||
|
|
- https://github.com/cipherreborn/SB--.-HACK-the-EQGRP-1
|
||
|
|
- https://github.com/cyberheartmi9/EQGRP
|
||
|
|
- https://github.com/hackcrypto/EQGRP
|
||
|
|
- https://github.com/happysmack/x0rzEQGRP
|
||
|
|
- https://github.com/kongjiexi/leaked2
|
||
|
|
- https://github.com/maxcvnd/bdhglopoj
|
||
|
|
- https://github.com/namangangwar/EQGRP
|
||
|
|
- https://github.com/r3p3r/x0rz-EQGRP
|
||
|
|
- https://github.com/shakenetwork/shadowbrokerstuff
|
||
|
|
- https://github.com/sinloss/EQGRP
|
||
|
|
- https://github.com/thePevertedSpartan/EQ1
|
||
|
|
- https://github.com/thetrentus/EQGRP
|
||
|
|
- https://github.com/thetrentus/ShadowBrokersStuff
|
||
|
|
- https://github.com/thetrentusdev/shadowbrokerstuff
|
||
|
|
- https://github.com/wuvuw/EQGR
|
||
|
|
- https://github.com/x0rz/EQGRP
|
||
|
|
|