vendor:
e107
by:
sysbug
7.5
CVSS
HIGH
Remote Code Execution
CWE
Product Name: e107
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
e107 Remote Exploit
The e107 remote exploit allows an attacker to send an include() vulnerability to a host victim, resulting in the upload of a malicious file to /images/evil.php. This can lead to remote code execution on the victim's system.
Mitigation:
Unknown