uploader.php in the KCFinder integration project through 2018-06-01 for Drupal mishandles validation, aka SA-CONTRIB-2018-024. NOTE: This project is not covered by Drupal's security advisory policy.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-12-31T23:27:52

Updated: 2020-12-31T23:27:52

Reserved: 2020-12-31T00:00:00


Link: CVE-2018-25002

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-01-01T01:15:12.900

Modified: 2021-01-11T15:16:55.657


Link: CVE-2018-25002

JSON object: View

cve-icon Redhat Information

No data.

CWE