CVE-2017-9364

Publication date

2017-06-02 05:04:00

Family

mitre

State

PUBLISHED

Description

Unrestricted File Upload exists in BigTree CMS through 4.2.18: if an attacker uploads an xxx.pht or xxx.phtml file, they could bypass a safety check and execute any code.