CVE
- Id
- 33295
- CVE No.
- CVE-2008-3178
- Status
- Candidate
- Description
- Unrestricted file upload vulnerability in upload_pictures.php in WebXell Editor 0.1.3 allows remote attackers to execute arbitrary code by uploading a .php file with a jpeg content type, then accessing it via a direct request to the file in upload/.
- Phase
- Assigned (20080715)
- Votes
- None (candidate not yet proposed)
- Comments