Описание
Elefant CMS Improper Input Validation
apps/filemanager/handlers/upload/drop.php in Elefant CMS 2.0.3 performs a urldecode step too late in the "Cannot upload executable files" protection mechanism.
Пакеты
Наименование
elefant/cms
composer
Затронутые версииВерсия исправления
<= 2.0.3
2.0.4
Связанные уязвимости
CVSS3: 9.8
nvd
больше 7 лет назад
apps/filemanager/handlers/upload/drop.php in Elefant CMS 2.0.3 performs a urldecode step too late in the "Cannot upload executable files" protection mechanism.