cve/2006/CVE-2006-4558.md
2024-06-18 02:51:15 +02:00

715 B

CVE-2006-4558

Description

DeluxeBB 1.06 and earlier, when run on the Apache HTTP Server with the mod_mime module, allows remote attackers to execute arbitrary PHP code by uploading files with double extensions via the fileupload parameter in a newthread action in newpost.php.

POC

Reference

Github

No PoCs found on GitHub currently.