TROYANOSYVIRUS
Back to CVEs

CVE-2007-2214

N/A

Description

Unrestricted file upload vulnerability in includes/upload_file.php in DmCMS allows remote attackers to upload arbitrary PHP scripts by placing a script's contents in both the File2 and File3 parameters, and sending a ok.php?do=act Referer.

CVE Details

CVSS v3.1 ScoreN/A
Published4/24/2007
Last Modified4/23/2026
Sourcenvd
Honeypot Sightings0

Affected Products

dmcms:dmcms

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.