Security Advisory

CVE-2007-5738

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-10-30 23:00:00
Last updated 2024-08-07 15:39:13
Assigner mitre
State PUBLISHED

Description

The FlashUpload component in Korean GHBoard uses a client-side protection mechanism to prevent uploading of dangerous file extensions, which allows remote attackers to bypass restrictions and upload arbitrary files via a modified copy of component/flashupload/upload.html.