Unrestricted File Upload exists in BigTree CMS through 4.2.18: if an attacker uploads an 'xxx.pht' or 'xxx.phtml' file, they could bypass a safety check and execute any code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2017-06-02T05:04:00

Updated: 2017-06-02T05:57:01

Reserved: 2017-06-02T00:00:00


Link: CVE-2017-9364

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-06-02T05:29:00.870

Modified: 2017-06-06T20:24:07.143


Link: CVE-2017-9364

JSON object: View

cve-icon Redhat Information

No data.

CWE