CVE-2007-2742

Publication date

2007-05-17 19:00:00

Family

mitre

State

PUBLISHED

Description

Unrestricted file upload vulnerability in labs.beffa.org w2box 4.0.0 Beta4 allows remote attackers to upload arbitrary PHP code via a filename with a double extension such as .php.jpg.