Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php.
No PoCs from references.
- https://github.com/20142995/Goby
- https://github.com/20142995/nuclei-templates
- https://github.com/5ecurity/CVE-List
- https://github.com/ARPSyndicate/cvemon
- https://github.com/ARPSyndicate/kenzer-templates
- https://github.com/HimmelAward/Goby_POC
- https://github.com/NyxAzrael/Goby_POC
- https://github.com/SexyBeast233/SecBooks
- https://github.com/Z0fhack/Goby_POC
- https://github.com/amcai/myscan
- https://github.com/anquanquantao/iwantacve