CVE-2012-1198
CVE-2012-1198
base_ag_main.php in Basic Analysis and Security Engine (BASE) 1.4.5 allows remote attackers to execute arbitrary code by uploading contents of the file with an executable extension via a create action, then accessing it via a view action.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencepacketstormsecurity.org/files/109663/BASE-1.4.5-Remote-File-Inclusion-Shell-Creation.htmlunverifiedexploitdbwww.exploit-db.com/exploits/36760unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →