HIGH
Unrestricted file upload vulnerability in uploadp.php in New Earth Programming Team (NEPT) imgupload (aka Image Uploader) 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension and a modified content type, then accessing this file via a direct request, as demonstrated by an upload with an image/jpeg content type
Published Jun 4, 2009
7.5
HIGHCVSS 2.0
EPSS 4.34%
Description
Affected products
Remediation
Metrics
References (5)
Change history (0)
No recorded changes yet.