CVE-2015-0877 Information

Description

Unrestricted file upload vulnerability in app/lib/mlf.pl in C-BOARD Moyuku before 1.03b3 allows remote attackers to execute arbitrary code by uploading a file with a \0 character in its name.

Reference

http://jvn.jp/en/jp/JVN73261710/index.html http://jvndb.jvn.jp/jvndb/JVNDB-2015-000018 http://sourceforge.jp/projects/cb-moyuku/news/

Share on: