What happened
A public source linked this CVE to an advisory or demonstration repository. Review the original reference before use.
Affected versions
Unknown product: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
Exploit-DB 46698CuteNews 2.1.2 - 'avatar' Remote Code Execution (Metasploit)AkkuS2019-04-15VerifiedExploit-DB 48800CuteNews 2.1.2 - Remote Code ExecutionMusyoka Ian2020-09-10VerifiedPoC-in-GitHub · mt-code/CVE-2019-11447Exploits CuteNews 2.1.2 via poor file upload checks used when uploading an avatar image leading to RCE.★ 0mt-code2020-10-18CandidatePoC-in-GitHub · khuntor/CVE-2019-11447-EXPCuteNews Avatar 2.1.2 Remote Code Execution Vulnerability★ 1khuntor2020-10-30CandidatePoC-in-GitHub · ColdFusionX/CVE-2019-11447_CuteNews-AvatarUploadRCEExploit Code for CVE-2019-11447 aka CuteNews 2.1.2 Avatar upload RCE (Authenticated)★ 0ColdFusionX2021-03-17CandidatePoC-in-GitHub · thewhiteh4t/cve-2019-11447CutePHP Cute News 2.1.2 RCE PoC★ 9thewhiteh4t2021-03-18CandidatePoC-in-GitHub · substing/CVE-2019-11447_reverse_shell_upload★ 0substing2023-12-28CandidatePoC-in-GitHub · CRFSlick/CVE-2019-11447-POCCuteNews 2.1.2 - CVE-2019-11447 Proof-Of-Concept★ 1CRFSlick2024-02-11CandidatePoC-in-GitHub · capivara-research/WordPress-Path-Traversal-CVE-2019-11447CPTS HackTheBox - Penetration Test Report: WordPress Path Traversal CVE-2019-11447★ 0capivara-research2026-08-22CandidateSource timeline
Discovered through Exploit-DBView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.