HIGH
PivotX 2.3.11 allows remote authenticated Advanced users to execute arbitrary PHP code by performing an upload with a safe file extension (such as .jpg) and then invoking the duplicate function to change to the .php extension
Published Apr 7, 2017
8.8
HIGHCVSS 3.0
EPSS 1.45%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.