Roxy Fileman 1.4.5 allows unrestricted file upload in upload.php.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/151033/Roxy-Fileman-1.4.5-File-Upload-Directory-Traversal.html | Third Party Advisory VDB Entry |
https://www.exploit-db.com/exploits/46085/ | VDB Entry Third Party Advisory |
Configurations
History
No history.
Information
Published : 2019-03-21 16:00
Updated : 2019-03-22 16:24
NVD link : CVE-2018-20526
Mitre link : CVE-2018-20526
CVE.ORG link : CVE-2018-20526
JSON object : View
Products Affected
roxyfileman
- roxy_fileman
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type