CVE-2019-9692
MEDIUMCMS Made Simple < 2.2.10 - Unrestricted File Upload via Watermark Image Extension Bypass
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2019-9692.
PoCs published by Metasploit, Daniele Scanu, Daniele Scanu, Fabio Cogno, including Metasploit module exploits/multi/http/cmsms_showtime2_rce.
AI-analyzed exploit summary This Metasploit module exploits a file upload vulnerability in CMS Made Simple's Showtime2 module (CVE-2019-9692), allowing authenticated users to upload malicious PHP files disguised as watermark images, leading to remote code execution.
Description
class.showtime2_image.php in CMS Made Simple (CMSMS) before 2.2.10 does not ensure that a watermark file has a standard image file extension (GIF, JPG, JPEG, or PNG).
Exploits (3)
This Metasploit module exploits a file upload vulnerability in CMS Made Simple's Showtime2 module (CVE-2019-9692), allowing authenticated users to upload malicious PHP files disguised as watermark images, leading to remote code execution.
This exploit targets an authenticated arbitrary file upload vulnerability in the Showtime2 module for CMS Made Simple. It logs in, uploads a PHP shell, and spawns a reverse shell using netcat.
This Metasploit module exploits a file upload vulnerability in CMS Made Simple's Showtime2 module (CVE-2019-9692), allowing authenticated users to upload malicious PHP files and achieve remote code execution.
References (6)
Scores
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N