mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 01:04:30 +00:00
945 B
945 B
CVE-2019-12744
Description
SeedDMS before 5.1.11 allows Remote Command Execution (RCE) because of unvalidated file upload of PHP scripts, a different vulnerability than CVE-2018-12940.
POC
Reference
- http://packetstormsecurity.com/files/153383/SeedDMS-Remote-Command-Execution.html
- http://packetstormsecurity.com/files/153383/SeedDMS-Remote-Command-Execution.html
- http://packetstormsecurity.com/files/163283/Seeddms-5.1.10-Remote-Command-Execution.html
- http://packetstormsecurity.com/files/163283/Seeddms-5.1.10-Remote-Command-Execution.html