"evaluatorComment":"Per: http://cwe.mitre.org/data/definitions/434.html\r\n\r\n'CWE-434: Unrestricted Upload of File with Dangerous Type'",
"descriptions":[
{
"lang":"en",
"value":"Unrestricted file upload vulnerability in upload.php in PHPSimplicity Simplicity oF Upload 1.3.2 allows remote attackers to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by .php.gif."
},
{
"lang":"es",
"value":"Vulnerabilidades de subida de archivos sin restricci\u00f3n en upload.php en PHPSimplicity Simplicity oF Upload v1.3.2 permite a atacantes remotos ejecutar c\u00f3digo PHP de su elecci\u00f3n por la carga de un archivo con doble extensi\u00f3n, como ha sido demostrado con uno .php.gif. \r\n"