.. / CVE-2018-16836

Exploit for Rubedo CMS <=3.4.0 - Directory Traversal (CVE-2018-16836)

Description:

Rubedo CMS through 3.4.0 contains a directory traversal vulnerability in the theme component, allowing unauthenticated attackers to read and execute arbitrary files outside of the service root path, as demonstrated by a /theme/default/img/%2e%2e/..//etc/passwd URI.

Nuclei Template

View the template here CVE-2018-16836.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2018/CVE-2018-16836.yaml
Copy

References:

https://nvd.nist.gov/vuln/detail/CVE-2018-16836
https://www.exploit-db.com/exploits/45385
https://github.com/maroueneboubakri/CVE/tree/master/rubedo-cms
https://github.com/ARPSyndicate/kenzer-templates
https://www.exploit-db.com/exploits/45385/