CVE

Id
84245  
CVE No.
CVE-2015-6968  
Status
Candidate  
Description
Multiple incomplete blacklist vulnerabilities in the serendipity_isActiveFile function in include/functions_images.inc.php in Serendipity before 2.0.2 allow remote authenticated users to execute arbitrary PHP code by uploading a file with a (1) .pht or (2) .phtml extension.  
Phase
Assigned (20150916)  
Votes
None (candidate not yet proposed)  
Comments