Exploitation Summary
EIP tracks 1 public exploit for CVE-2015-5958.
PoCs published by hyp3rlinx, Jay Turla, including Metasploit module exploits/multi/http/phpfilemanager_rce.
AI-analyzed exploit summary This Metasploit module exploits a remote code execution vulnerability in phpFileManager 0.9.8 by sending a crafted HTTP request to execute arbitrary commands. It leverages a misconfiguration in the authentication mechanism to gain access and execute payloads.
Description
phpFileManager 0.9.8 allows remote attackers to execute arbitrary commands via a crafted URL.
Exploits (1)
This Metasploit module exploits a remote code execution vulnerability in phpFileManager 0.9.8 by sending a crafted HTTP request to execute arbitrary commands. It leverages a misconfiguration in the authentication mechanism to gain access and execute payloads.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H