The provided text describes multiple remote file-include vulnerabilities in 2Moons 1.4 due to insufficient input sanitization. It lists various endpoints where an attacker can inject malicious input to potentially execute arbitrary code or disclose sensitive information.
Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target:2Moons 1.4
No auth needed
Prerequisites:Network access to the target application · Vulnerable version of 2Moons installed