Security Advisory
CVE-2018-16352
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
There is a PHP code upload vulnerability in WeaselCMS 0.3.6 via index.php because code can be embedded at the end of a .png file when the image/png content type is used.