CVE-2015-2780
CRITICALBerta CMS < 0.8.9b - Unauthenticated Arbitrary File Upload and Remote Code Execution via Image File
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-2780. PoCs published by Simon Waters.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated file upload vulnerability in Berta CMS, allowing arbitrary PHP code execution by bypassing the getimagesize() check with a malformed GIF file containing PHP code.
Description
Unrestricted file upload vulnerability in Berta CMS allows remote attackers to execute arbitrary code by uploading a crafted image file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.
Exploits (1)
This exploit demonstrates an unauthenticated file upload vulnerability in Berta CMS, allowing arbitrary PHP code execution by bypassing the getimagesize() check with a malformed GIF file containing PHP code.
References (3)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H