MEDIUM
Unrestricted file upload vulnerability in admin/uploadimage.php in eLitius 1.0 allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files via an avatar file with an accepted Content-Type such as image/gif, then requesting the file in admin/banners/
Published May 17, 2009
6.8
MEDIUMCVSS 2.0
EPSS 1.96%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.