Vulnerabilities > CVE-2006-5411 - Remote Command Execution vulnerability in FreeWPS Upload.PHP

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
justin-white
exploit available

Summary

Unrestricted file upload vulnerability in upload.php for Free Web Publishing System (FreeWPS), possibly 2.11 and earlier, allows remote attackers to upload and execute arbitrary PHP programs.

Vulnerable Configurations

Part Description Count
Application
Justin_White
1

Exploit-Db

descriptionFreeWPS 2.11 Upload.PHP Remote Command Execution Vulnerability. CVE-2006-5411. Webapps exploit for php platform
idEDB-ID:28795
last seen2016-02-03
modified2006-10-12
published2006-10-12
reporterHACKERS PAL
sourcehttps://www.exploit-db.com/download/28795/
titleFreeWPS 2.11 Upload.PHP Remote Command Execution Vulnerability