CVE

Id
30350  
CVE No.
CVE-2008-0233  
Status
Candidate  
Description
Unrestricted file upload vulnerability in Zero CMS 1.0 Alpha and earlier allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files by uploading an avatar file with an accepted Content-Type such as image/jpeg.  
Phase
Assigned (20080110)  
Votes
None (candidate not yet proposed)  
Comments