TROYANOSYVIRUS
Voltar para CVEs

CVE-2011-4334

N/A

Descricao

edit.php in LabWiki 1.1 and earlier does not properly verify uploaded user files, which allows remote authenticated users to upload arbitrary PHP files via a PHP file with a .gif extension in the userfile parameter.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado10/23/2017
Ultima modificacao4/20/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

labwiki_project:labwiki

Fraquezas (CWE)

CWE-434

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.