packetstormsecurity.com
http://packetstormsecurity.com/files/159712/Sentrifugo-3.2-Shell-Upload-Restriction-Bypass.html CVE-2019-15813
HIGH
Sentrifugo 3.2 - File Upload Restriction Bypass
Record summary
CVE-2019-15813 has a selected CVSS score of 8.8 (high); EIP currently links 2 catalogued exploits.
Description
Multiple file upload restriction bypass vulnerabilities in Sentrifugo 3.2 could allow authenticated users to execute arbitrary code via a webshell.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBSentrifugo 3.2 - File Upload Restriction BypassExploitDB exploitby creosoteNot analyzed1 file
ExploitDBSentrifugo 3.2 - File Upload Restriction Bypass (Authenticated)ExploitDB exploitby Gurkirat SinghNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-15813 47323exploit
https://www.exploit-db.com/exploits/47323