Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-4878 PoC — FlatnuX CMS ‘controlcenter.php’路径遍历漏洞

Source
Associated Vulnerability
Title:FlatnuX CMS ‘controlcenter.php’路径遍历漏洞 (CVE-2012-4878)
Description:FlatnuX CMS 2011 08.09.2版本中的controlcenter.php中存在绝对路径遍历漏洞。远程认证用户可利用该漏洞通过操作中的dir参数中的全路径名,读取任意文件。
Description
A path traversal vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 allows remote administrators to read arbitrary files via a full pathname in the dir parameter in a contents/Files action.
File Snapshot

id: CVE-2012-4878 info: name: FlatnuX CMS - Directory Traversal author: daffainfo severity: m ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.