vendor:
Bigace 2.7.5
by:
Net.Edit0r
7.5
CVSS
HIGH
Remote Upload file Vulnerability
434
CWE
Product Name: Bigace 2.7.5
Affected Version From: 2.7.2005
Affected Version To: 2.7.2005
Patch Exists: Yes
Related CWE: N/A
CPE: a:bigace:bigace:2.7.5
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux /php
2011
Bigace 2.7.5 Remote Upload file Vulnerability
Bigace 2.7.5 is vulnerable to a remote upload file vulnerability. An attacker can exploit this vulnerability by sending a malicious file to the /addon/FCKeditor/editor/filemanager/connectors/uploadtest.html page.
Mitigation:
Upgrade to the latest version of Bigace 2.7.5