Security Advisory
CVE-2014-1827
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to upload arbitrary files by placing a %00 sequence after a dangerous extension, as demonstrated by a .html%00.txt file.