An arbitrary command execution vulnerability exists in the fopen() function of file writes of UCMS v1.4.8, where an attacker can gain access to the server.
No PoCs from references.
- https://github.com/0day404/vulnerability-poc
- https://github.com/ARPSyndicate/cvemon
- https://github.com/EdgeSecurityTeam/Vulnerability
- https://github.com/J1ezds/Vulnerability-Wiki-page
- https://github.com/KayCHENvip/vulnerability-poc
- https://github.com/SexyBeast233/SecBooks
- https://github.com/Threekiii/Awesome-POC
- https://github.com/XiaomingX/awesome-poc-for-red-team
- https://github.com/d4n-sec/d4n-sec.github.io
- https://github.com/tzwlhack/Vulnerability