github.com
https://github.com/bludit/bludit/issues/812 CVE-2018-1000811
HIGH
bludit Pages Editor 3.0.0 - Arbitrary File Upload
Record summary
CVE-2018-1000811 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.
Description
bludit version 3.0.0 contains a Unrestricted Upload of File with Dangerous Type vulnerability in Content Upload in Pages Editor that can result in Remote Command Execution. This attack appear to be exploitable via malicious user have to upload a crafted payload containing PHP code.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBbludit Pages Editor 3.0.0 - Arbitrary File UploadExploitDB exploitby BouSalmanNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-1000811 46060exploit
https://www.exploit-db.com/exploits/46060