cve/2014/CVE-2014-4663.md
2024-05-26 14:27:05 +02:00

824 B

CVE-2014-4663

Description

TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the src parameter.

POC

Reference

Github

No PoCs found on GitHub currently.