ID | CVE-2019-11377 | ||||||
Sažetak | wcms/wex/finder/action.php in WCMS v0.3.2 has a Arbitrary File Upload Vulnerability via developer/finder because .php is a valid extension according to the fm_get_text_exts function. | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:L/Au:S/C:P/I:P/A:P | ||||||
Zadnje važnije ažuriranje | 22-04-2019 - 20:12 | ||||||
Objavljeno | 20-04-2019 - 15:29 |