CVE

Id
102340  
CVE No.
CVE-2017-5520  
Status
Candidate  
Description
The media rename feature in GeniXCMS through 0.0.8 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to rename and execute files with the `.php6`, `.php7` and `.phtml` extensions.  
Phase
Assigned (20170117)  
Votes
None (candidate not yet proposed)  
Comments