CVE

Id
23213  
CVE No.
CVE-2006-7109  
Status
Candidate  
Description
Unrestricted file upload vulnerability in IMCE before 1.6, a Drupal module, allows remote authenticated users to upload arbitrary PHP code via a filename with a double extension such as .php.gif.  
Phase
Assigned (20070305)  
Votes
None (candidate not yet proposed)  
Comments