CVE-2008-6751
ReVou TClone - Unauthenticated Arbitrary File Upload via index.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6751. PoCs published by S.W.A.T..
AI-analyzed exploit summary This exploit demonstrates an arbitrary file upload vulnerability in ReVou Twitter Clone by bypassing MIME type checks. The attacker uploads a malicious PHP file disguised as a GIF to achieve remote code execution.
Description
Unrestricted file upload vulnerability in index.php in the Twitter Clone (TClone) plugin for ReVou Micro Blogging allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in settings/my_photo.
Exploits (1)
This exploit demonstrates an arbitrary file upload vulnerability in ReVou Twitter Clone by bypassing MIME type checks. The attacker uploads a malicious PHP file disguised as a GIF to achieve remote code execution.