TUCoPS :: Web BBS :: etc :: b06-1576.htm

SimpleBBS v1.1(posts.php) remote command execution
SimpleBBS v1.1(posts.php) remote command execution
SimpleBBS v1.1(posts.php) remote command execution



[W]orld [D]efacers Team
=====================================--------------------Summary----------------
eVuln ID: WD10
Vendor: SimpleBBS 
Vendor's Web Site: www.simplemedia.org 
Software: SimpleBBS Forums
Sowtware's Web Site: www.simplemedia.org 
Versions: v1.1 v 1.0.*
Class: Remote
PoC/Exploit: Available
Solution: Not Available
Discovered by: rUnViRuS (worlddefacers.de)
-----------------Description---------------
posts.php File command execution
$cmd

--------------PoC/Exploit----------------------
http://www.worlddefacers.de/Public/WD-SMPL.txt 
--------------Solution---------------------
No Patch available.

--------------Credit-----------------------
Discovered by: rUnViRuS (worlddefacers.de)

------------------------------------------- 

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH