Security Advisory

CVE-2014-4663

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-07-15 14:00:00
Last updated 2024-08-06 11:20:26
Assigner mitre
State PUBLISHED

Description

TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the src parameter.