MEDIUM
Drupal 4.6.x before 4.6.7 and 4.7.0, when running on Apache with mod_mime, does not properly handle files with multiple extensions, which allows remote attackers to upload, modify, or execute arbitrary files in the files directory
Published Jun 1, 2006
5.1
MEDIUMCVSS 2.0
EPSS 11.12%
Description
Affected products
Remediation
References (9)
Change history (0)
No recorded changes yet.