PoC Index

CVE-2008-2650

MEDIUM 6.8EPSS 18.8%

Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sl parameter to index.php. NOTE: this can be leveraged for remote file execution by including adm.php and then invoking the upload action. NOTE: on 20080601, the vendor patched 3.1 without changing the version number.

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
18.81% chance of exploitation in the next 30 days, 97th percentile
Nuclei
medium · CWE-22
Published
2008-06-10
Updated
2024-08-07

Nuclei templates (1)

ExploitDB entries (1)

References

Related