Security Advisory

CVE-2018-13038

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-07-01 18:00:00
Last updated 2024-08-05 08:52:49
Assigner mitre
State PUBLISHED

Description

OpenSID 18.06-pasca has an Unrestricted File Upload vulnerability via an Attachment Document in the article feature. This vulnerability leads to uploading arbitrary PHP code via a .php filename with the application/pdf Content-Type.