CVE-2015-1587
Maarch GEC/GED < 1.4 and LetterBox < 2.8 - Unauthenticated Arbitrary File Upload via file_to_index.php
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2015-1587.
PoCs published by Adrien Thierry, rastating, including Metasploit module exploits/unix/webapp/maarch_letterbox_file_upload.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file upload vulnerability in Maarch Letterbox <= 2.4 and Maarch GEC/GED <= 1.4. It uploads a backdoor PHP file via an unauthenticated endpoint, allowing remote code execution.
Description
Unrestricted file upload vulnerability in file_to_index.php in Maarch LetterBox 2.8 and earlier and GEC/GED 1.4 and earlier allows remote attackers to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a request to a predictable filename in tmp/.
Exploits (2)
This exploit demonstrates an arbitrary file upload vulnerability in Maarch Letterbox <= 2.4 and Maarch GEC/GED <= 1.4. It uploads a backdoor PHP file via an unauthenticated endpoint, allowing remote code execution.
This Metasploit module exploits an unauthenticated file upload vulnerability in Maarch LetterBox 2.8, allowing arbitrary PHP file upload and remote code execution via the file_to_index.php script.