CVE-2010-3483
CVE-2010-3483
cms_write.php in Primitive CMS 1.0.9 does not properly restrict access, which allows remote attackers to gain administrative privileges via a direct request. NOTE: this vulnerability can be leveraged to conduct cross-site scripting attacks, as demonstrated using the (1) title, (2) content, and (3) menutitle parameters.
Affected products
n/a · n/apublic PoCs found — 3
cve_referencepacketstormsecurity.org/1009-exploits/primitive-sqlxss.txtunverifiedcve_referencewww.exploit-db.com/exploits/15064unverifiedexploitdbwww.exploit-db.com/exploits/15064unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →