Files
CVEs-PoC/2013/CVE-2013-4949.md
T
2025-09-29 21:09:30 +02:00

768 B

CVE-2013-4949

Description

Unrestricted file upload vulnerability in view.php in Machform 2 allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in the upload form's directory in data/.

POC

Reference

Github

No PoCs found on GitHub currently.