Security Advisory

CVE-2006-2529

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-05-22 23:00:00
Last updated 2024-08-07 17:51:04
Assigner mitre
State PUBLISHED

Description

editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, when the upload feature is enabled, does not verify the Type parameter, which allows remote attackers to upload arbitrary file types. NOTE: It is not clear whether this is related to CVE-2006-0658.