Security Advisory

CVE-2007-3292

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-06-20 21:00:00
Last updated 2024-08-07 14:14:12
Assigner mitre
State PUBLISHED

Description

Unrestricted file upload vulnerability in LiveCMS 3.4 and earlier allows remote attackers to upload and execute arbitrary PHP code by specifying a PHP file type in a parameter intended for "a small image" associated with an article.