cve/2009/CVE-2009-4581.md
2024-05-26 14:27:05 +02:00

783 B

CVE-2009-4581

Description

Directory traversal vulnerability in modules/admincp.php in RoseOnlineCMS 3 B1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the admin parameter.

POC

Reference

Github

No PoCs found on GitHub currently.