Page 2 of 11 results (0.002 seconds)

CVSS: 8.8EPSS: 0%CPEs: 48EXPL: 0

25 Oct 2013 — Unrestricted file upload vulnerability in the avatar upload functionality in Simple Machines Forum before 2.0.6 and 2.1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory. vulnerabilidad de subida sin restricción de archivos en la funcionalidad avatar upload en Simple Machines Forum antes de 2.0.6 y 2.1 que permite a los usuarios remotos autenticados ejecutar código arbit... • http://download.simplemachines.org/index.php?thanks%3Bfilename=smf_2-0-6_changelog.txt •