cve/2012/CVE-2012-5242.md
2024-06-18 02:51:15 +02:00

689 B

CVE-2012-5242

Description

Directory traversal vulnerability in functions/suggest.php in Banana Dance B.2.6 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the name parameter in a get_template action.

POC

Reference

Github

No PoCs found on GitHub currently.