CVE-2007-4182 Information
Feb 14, 2021
cve
Description
Unrestricted file upload vulnerability in index.php in WikiWebWeaver 1.1 and earlier allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .gif.php which is accessible from data/documents/.
Reference
http://securityreason.com/securityalert/2972 http://www.securityfocus.com/archive/1/475242/100/0/threaded http://www.securityfocus.com/bid/25164 https://exchange.xforce.ibmcloud.com/vulnerabilities/35736
Share on: