Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-4422
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-4422

Description:
Unrestricted file upload vulnerability in toendaCMS before 0.6.2 Stable allows remote authenticated administrators to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in data/images/albums.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA17471

MISC
  http://www.toenda.com/de/data/files/Software/toendaCMS_Version_0.6.0_Stable/toendaCMS_0.6.2.1_Stable.zip

BUGTRAQ
  http://www.securityfocus.com/archive/1/415975

BID
  15351


Return to the previous page.