Security Advisory
CVE-2004-1408
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The addImage method for admin.class.php in Image Gallery Web Application 0.9.10 does not properly check filenames, which allows remote attackers to upload and execute arbitrary files.