CVE

Id
26786  
CVE No.
CVE-2007-3429  
Status
Candidate  
Description
Unrestricted file upload vulnerability in signup.php in e107 0.7.8 and earlier, when photograph upload is enabled, allows remote attackers to upload and execute arbitrary PHP code via a filename with a double extension such as .php.jpg.  
Phase
Assigned (20070626)  
Votes
None (candidate not yet proposed)  
Comments