packetstormsecurity.com
http://packetstormsecurity.com/files/153383/SeedDMS-Remote-Command-Execution.html CVE-2019-12744
HIGH
SeedDMS versions < 5.1.11 - Remote Command Execution
Record summary
CVE-2019-12744 has a selected CVSS score of 7.5 (high); EIP currently links 2 catalogued exploits and 1 repository PoC.
Proofs of concept
3Catalogued exploits
ExploitDBSeedDMS versions < 5.1.11 - Remote Command ExecutionExploitDB exploitby Nimit JainNot analyzed1 file
ExploitDBSeeddms 5.1.10 - Remote Command Execution (RCE) (Authenticated)ExploitDB exploitby Bryan LeongNot analyzed1 file
Repository PoCs
GitHubnobodyatall648/CVE-2019-12744Repository PoCby nobodyatall648Stars: 1Not analyzed7 files
References
5packetstormsecurity.com
http://packetstormsecurity.com/files/163283/Seeddms-5.1.10-Remote-Command-Execution.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-12744 secfolks.blogspot.com
https://secfolks.blogspot.com/2019/06/exploit-for-cve-2019-12744-remote.html sourceforge.netConfirmation
https://sourceforge.net/p/seeddms/code/ci/master/tree/CHANGELOG