CVE-2015-6567

HIGH

Wolf CMS < 0.8.3.1 - Authenticated Arbitrary File Upload and PHP Code Execution via File Manager

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2015-6567. PoCs published by s0nk3y, Narendra Bhati.

AI-analyzed exploit summary This Metasploit module exploits an arbitrary PHP file upload vulnerability in WolfCMS 0.8.2 by authenticating as an admin, bypassing CSRF protection, and uploading a malicious PHP payload to achieve remote code execution.

Description

Wolf CMS before 0.8.3.1 allows unrestricted file upload and PHP Code Execution because admin/plugin/file_manager/browse/ (aka the filemanager) does not validate the parameter "filename" properly. Exploitation requires a registered user who has access to upload functionality.

Exploits (2)

exploitdb WORKING POC
by s0nk3y · rubyremotephp
https://www.exploit-db.com/exploits/40004

This Metasploit module exploits an arbitrary PHP file upload vulnerability in WolfCMS 0.8.2 by authenticating as an admin, bypassing CSRF protection, and uploading a malicious PHP payload to achieve remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: WolfCMS <= 0.8.2
Auth required
Prerequisites: Valid admin credentials · Access to the admin login panel
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP
by Narendra Bhati · textwebappsphp
https://www.exploit-db.com/exploits/38000

This is a writeup describing an arbitrary file upload vulnerability in Wolf CMS 0.8.2, leading to remote command execution. It outlines the steps to exploit the vulnerability but does not include actual exploit code.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Wolf CMS 0.8.2
Auth required
Prerequisites: Access to a registered user account with upload permissions
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Exploit, Technical Description, Third Party Advisory x_refsource_misc
http://www.websecgeeks.com/2015/08/wolf-cms-arbitrary-file-upload-to.html
Third Party Advisory x_refsource_misc
https://github.com/wolfcms/wolfcms/issues/625
Release Notes, Third Party Advisory x_refsource_confirm
https://github.com/wolfcms/wolfcms/releases/tag/0.8.3.1
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/38000/
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/40004/
Release Notes, Third Party Advisory x_refsource_confirm
https://www.wolfcms.org/blog/2015/08/10/releasing-wolf-cms-0-8-3-1.html

Scores

CVSS v3 8.8
EPSS 0.1084
EPSS Percentile 95.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-20
Status published
Products (1)
wolfcms/wolf_cms < 0.8.3
Published Apr 14, 2017
Tracked Since Feb 18, 2026