Описание
ImageManager in e107 before 0.617 does not properly check the types of uploaded files, which allows remote attackers to execute arbitrary code by uploading a PHP file via the upload parameter to images.php.
ImageManager in e107 before 0.617 does not properly check the types of uploaded files, which allows remote attackers to execute arbitrary code by uploading a PHP file via the upload parameter to images.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2004-2262
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18670
- https://www.exploit-db.com/exploits/704
- http://e107.org/comment.php?comment.news.672
- http://secunia.com/advisories/13657
- http://securitytracker.com/id?1012657
- http://www.osvdb.org/12586
- http://www.securityfocus.com/bid/12111
Связанные уязвимости
nvd
около 21 года назад
ImageManager in e107 before 0.617 does not properly check the types of uploaded files, which allows remote attackers to execute arbitrary code by uploading a PHP file via the upload parameter to images.php.