CVE-2012-3575
RBX Gallery 2.1 - Unauthenticated Arbitrary File Upload via uploader.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-3575. PoCs published by Sammy FORGIT.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file upload vulnerability in WordPress RBX Gallery plugin version 2.1. It uses cURL to upload PHP files to the target server, allowing remote code execution via the uploaded files.
Description
Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/rbxslider.
Exploits (1)
This exploit demonstrates an arbitrary file upload vulnerability in WordPress RBX Gallery plugin version 2.1. It uses cURL to upload PHP files to the target server, allowing remote code execution via the uploaded files.