packetstormsecurity.com
http://packetstormsecurity.com/files/130317/u5CMS-3.9.3-Open-Redirect.html CVE-2015-1578
Achat 0.150 beta7 - Remote Buffer Overflow
Record summary
CVE-2015-1578 has a selected CVSS score of 5.8; EIP currently links 1 catalogued exploit and 3 repository PoCs.
Description
Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) pidvesa cookie to u5admin/pidvesa.php or (2) uri parameter to u5admin/meta2.php.
Description source: CVE List
Exploitation context
Proofs of concept
4Catalogued exploits
ExploitDBAchat 0.150 beta7 - Remote Buffer OverflowExploitDB exploitby KAhara MAnharaNot analyzed1 file
Repository PoCs
GitHubyaldobaoth/CVE-2015-1578-PoCRepository PoCby yaldobaothStars: 0Not analyzed3 files
GitHubyaldobaoth/CVE-2015-1578-PoC-MetasploitRepository PoCby yaldobaothStars: 0Not analyzed3 files
GitHubZeppperoni/CVE-2015-1578Repository PoCby ZeppperoniStars: 0Not analyzed2 files
References
3zeroscience.mk
http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5227.php nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2015-1578