Files
CVEs-PoC/2012/CVE-2012-1617.md
2025-09-29 21:09:30 +02:00

933 B

CVE-2012-1617

Description

Directory traversal vulnerability in combine.php in OSClass before 2.3.6 allows remote attackers to read and write arbitrary files via a .. (dot dot) in the type parameter. NOTE: this vulnerability can be leveraged to upload arbitrary files.

POC

Reference

Github

No PoCs found on GitHub currently.