Unrestricted file upload vulnerability in Zero CMS 1.0 Alpha and earlier allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files by uploading an avatar file with an accepted Content-Type such as image/jpeg.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2008-01-11T02:00:00

Updated: 2017-09-28T12:57:01

Reserved: 2008-01-10T00:00:00


Link: CVE-2008-0233

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2008-01-11T02:46:00.000

Modified: 2017-09-29T01:30:10.770


Link: CVE-2008-0233

JSON object: View

cve-icon Redhat Information

No data.

CWE