packetstormsecurity.com
http://packetstormsecurity.com/files/155577/Verot-2.0.3-Remote-Code-Execution.html CVE-2019-19576
CRITICAL
Remote code execution in verot/class.upload.php
Record summary
CVE-2019-19576 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit and 1 repository PoC.
Description
class.upload.php in verot.net class.upload before 1.0.3 and 2.x before 2.0.4, as used in the K2 extension for Joomla! and other products, omits .phar from the set of dangerous file extensions.
Description source: CVE List
Exploitation context
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
verot/class.upload.phpBrowse Packagist / verot/class.upload.php | GitHub Advisory | Before 1.0.3 · Fixed in 1.0.3 | affected |
| 2.0.0 to < 2.0.4 · Fixed in 2.0.4 | affected |
Proofs of concept
2Catalogued exploits
ExploitDBVerot 2.0.3 - Remote Code ExecutionExploitDB exploitby Jinny RamsmarkNot analyzed1 file
Repository PoCs
GitHubjra89/CVE-2019-19576Repository PoCby jra89Stars: 12Not analyzed7 files
References
12github.com
https://github.com/getk2/k2/commit/d1344706c4b74c2ae7659b286b5a066117155124 github.com
https://github.com/jra89/CVE-2019-19576 github.com
https://github.com/verot/class.upload.php/commit/5a7505ddec956fdc9e9c071ae5089865559174f1 github.com
https://github.com/verot/class.upload.php/commit/db1b4fe50c1754696970d8b437f07e7b94a7ebf2 github.com
https://github.com/verot/class.upload.php/compare/1.0.2...1.0.3 github.com
https://github.com/verot/class.upload.php/compare/2.0.3...2.0.4 medium.com
https://medium.com/%40jra8908/cve-2019-19576-e9da712b779 medium.com
https://medium.com/@jra8908/cve-2019-19576-e9da712b779 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-19576 verot.net
https://www.verot.net/ verot.net
https://www.verot.net/php_class_upload.htm