mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 17:47:58 +02:00
810 B
810 B
CVE-2006-6879
Description
Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated users to upload arbitrary PHP scripts to the gfx/ and files/ directories via the userfile parameter.
POC
Reference
- https://www.exploit-db.com/exploits/3017
- https://www.exploit-db.com/exploits/3017
- https://www.exploit-db.com/exploits/3020
- https://www.exploit-db.com/exploits/3020
Github
No PoCs found on GitHub currently.