Redmine远程代码执行漏洞
时间:2010-12-28 来源:秩名
Redmine是基于ROR框架开发的一套跨平台项目管理系统,是项目管理系统的后起之秀。Redmine存在远程代码执行漏洞,可能导致攻击者远程执行任意代码。
[+]info:
~~~~~~~~~
joernchen <[email protected]> (Phenoelit)
[+]poc:
~~~~~~~~~
http://metasploit.com/redmine/projects/framework/repository/revisions/11406/entry/modules/exploits/unix/webapp/redmine_scm_exec.rb
[+]Reference:
~~~~~~~~~
http://eromang.zataz.com/2010/12/26/remote-code-execution-for-redmine/
http://metasploit.com/redmine/projects/framework/repository/revisions/11406/entry/modules/exploits/unix/webapp/redmine_scm_exec.rb
标签分类:
相关阅读 更多 +
排行榜 更多 +