cve/2009/CVE-2009-3182.md
2024-06-18 02:51:15 +02:00

735 B

CVE-2009-3182

Description

Unrestricted file upload vulnerability in admin/editor/filemanager/browser.html in Anantasoft Gazelle CMS 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in user/File/.

POC

Reference

Github

No PoCs found on GitHub currently.