TROYANOSYVIRUS
Back to CVEs

CVE-2018-16388

N/A

Description

e107_web/js/plupload/upload.php in e107 2.1.8 allows remote attackers to execute arbitrary PHP code by uploading a .php filename with the image/jpeg content type.

CVE Details

CVSS v3.1 ScoreN/A
Published9/12/2018
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

e107:e107

Weaknesses (CWE)

CWE-434

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.