CVE-2007-3163

Incomplete blacklist vulnerability in the filemanager in Frederico Caldeira Knabben FCKeditor 2.4.2 allows remote attackers to upload arbitrary .php files via an alternate data stream syntax, as demonstrated by .php::$DATA filenames, a related issue to CVE-2006-0658.
Configurations

Configuration 1 (hide)

cpe:2.3:a:frederico_caldeira_knabben:fckeditor:2.4.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-06-11 22:30

Updated : 2024-02-14 01:17


NVD link : CVE-2007-3163

Mitre link : CVE-2007-3163

CVE.ORG link : CVE-2007-3163


JSON object : View

Products Affected

frederico_caldeira_knabben

  • fckeditor