CVE-2020-35754
HIGHOpenSolution Quick.CMS and Quick.Cart < 6.7 - Authenticated Remote Code Execution via Language Tab Input
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-35754. PoCs published by mari0x00.
AI-analyzed exploit summary This exploit leverages an authenticated RCE vulnerability in Quick.CMS 6.7 by injecting a reverse shell payload into the 'Back_end_only' parameter via the language settings page. The payload is triggered by accessing the languages admin page, resulting in a reverse shell connection to the attacker's specified IP and port.
Description
OpenSolution Quick.CMS < 6.7 and Quick.Cart < 6.7 allow an authenticated user to perform code injection (and consequently Remote Code Execution) via the input fields of the Language tab.
Exploits (1)
This exploit leverages an authenticated RCE vulnerability in Quick.CMS 6.7 by injecting a reverse shell payload into the 'Back_end_only' parameter via the language settings page. The payload is triggered by accessing the languages admin page, resulting in a reverse shell connection to the attacker's specified IP and port.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H