CVE

Id
71960  
CVE No.
CVE-2014-4663  
Status
Candidate  
Description
TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the src parameter.  
Phase
Assigned (20140626)  
Votes
None (candidate not yet proposed)  
Comments