HTMPL 1.11 - Command Execution
The exploit demonstrates a command injection vulnerability in HTMPL v1.11 via the 'help' parameter in htmpl_admin.cgi, allowing arbitrary command execution. The exploit also notes an information leak where the admin password is stored in plaintext.