CVE-2015-1577
CVE-2015-1577
Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a (1) .. (dot dot) or (2) full pathname in the f parameter.
Affected products
n/a · n/apublic PoCs found — 4
cve_referencepacketstormsecurity.com/files/130325/u5CMS-3.9.3-Arbitrary-File-Deletion.htmlunverifiedcve_referencewww.exploit-db.com/exploits/36026unverifiedexploitdbwww.exploit-db.com/exploits/36026unverifiedexploitdbwww.exploit-db.com/exploits/36025unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →