PT-2017-7035 · Wolfcms · Wolf Cms

S0Nk3Y

·

Published

2017-04-14

·

Updated

2017-09-17

·

CVE-2015-6567

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Wolf CMS versions prior to 0.8.3.1
Description The issue allows for unrestricted file upload and PHP code execution due to improper validation of the filename parameter in the file manager, accessible at the "admin/plugin/file manager/browse/" endpoint. This can be exploited by a registered user with upload access.
Recommendations For versions prior to 0.8.3.1, update to version 0.8.3.1 to resolve the issue. As a temporary workaround, consider restricting access to the file manager or disabling the upload functionality until the update can be applied.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-6567

Affected Products

Wolf Cms