cve/2007/CVE-2007-4182.md
2024-05-26 14:27:05 +02:00

741 B

CVE-2007-4182

Description

Unrestricted file upload vulnerability in index.php in WikiWebWeaver 1.1 and earlier allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .gif.php, which is accessible from data/documents/.

POC

Reference

Github

No PoCs found on GitHub currently.