CVE-2024-58295
HIGHElkArte Forum 1.1.9 - Authenticated Remote Code Execution via Theme Upload
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-58295. PoCs published by tmrswrr.
AI-analyzed exploit summary This exploit demonstrates an authenticated remote code execution (RCE) vulnerability in ElkArte Forum 1.1.9 by uploading a malicious PHP file via the theme installation feature. The attacker can execute arbitrary system commands by accessing the uploaded file.
Description
ElkArte Forum 1.1.9 contains a remote code execution vulnerability that allows authenticated administrators to upload malicious PHP files through the theme installation process. Attackers can upload a ZIP archive with a PHP file containing system commands, which can then be executed by accessing the uploaded file in the theme directory.
Exploits (1)
This exploit demonstrates an authenticated remote code execution (RCE) vulnerability in ElkArte Forum 1.1.9 by uploading a malicious PHP file via the theme installation feature. The attacker can execute arbitrary system commands by accessing the uploaded file.
References (4)
Scores
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N