vendor:
Simple File Upload
by:
gmda
N/A
CVSS
HIGH
Remote Code Execution
CWE
Product Name: Simple File Upload
Affected Version From: 1.3
Affected Version To: 1.3
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP with PHP version 5.3.2, Apache 2.0
2011
Simple File Upload v1.3 (module for joomla) Remote Code Execution Exploit
The vulnerability is closed to transmit malformed packets to the server that he still plays and saves in his belly. This thing can be a bad intent to send commands to the server running clearly causing safety problems. The script has peroblemi upload quality control.
Mitigation:
Unknown