CVE-2006-1208
CVE-2006-1208
Sergey Korostel PHP Upload Center allows remote attackers to execute arbitrary PHP code by uploading a file whose name ends in a .php.li extension, which can be accessed from the upload directory.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://biyosecurity.be/bugs/phpuploadcenter2.txthttp://secunia.com/advisories/19107http://securityreason.com/securityalert/564http://www.blogcu.com/Liz0ziM/317250/http://www.osvdb.org/23626http://www.scripts-by.net/PHP/File-Manipulation/php-upload-center.htmlhttp://www.securityfocus.com/archive/1/427215/100/0/threadedhttp://www.vupen.com/english/advisories/2006/0817