Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-7021
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-7021

Description:
Unrestricted file upload vulnerability in editlogo.php in AvailScript Jobs Portal Script allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension as an image or logo, then accessing it via a direct request to the file in an unspecified directory.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/45335

SAID
  Secunia Advisory: SA31810

MILW0RM
  http://www.milw0rm.com/exploits/6514

BID
  31297


Return to the previous page.