Security Advisory
CVE-2018-12995
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
onefilecms.php in OneFileCMS through 2012-04-14 might allow attackers to execute arbitrary PHP code via a .php filename on the Upload screen.