Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:12206
HistoryApr 13, 2006 - 12:00 a.m.

SimpleBBS v1.1(posts.php) remote command execution

2006-04-1300:00:00
vulners.com
7

[W]orld [D]efacers Team

--------------------Summary----------------
eVuln ID: WD10
Vendor: SimpleBBS
Vendor's Web Site: www.simplemedia.org
Software: SimpleBBS Forums
Sowtware's Web Site: www.simplemedia.org
Versions: v1.1 v 1.0.*
Class: Remote
PoC/Exploit: Available
Solution: Not Available
Discovered by: rUnViRuS (worlddefacers.de)
-----------------Description---------------
posts.php File command execution
$cmd

--------------PoC/Exploit----------------------
http://www.worlddefacers.de/Public/WD-SMPL.txt
--------------Solution---------------------
No Patch available.

--------------Credit-----------------------
Discovered by: rUnViRuS (worlddefacers.de)