1 results (0.002 seconds)

CVSS: 6.8EPSS: 3%CPEs: 1EXPL: 2

Unrestricted file upload vulnerability in Element-IT Ultimate Uploader 1.3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/. Vulnerabilidad de subida de fichero sin restricción en Element-IT Ultimate Uploader 1.3 permite a atacantes remotos ejecutar código de su elección subiendo un fichero con extensión ejecutable para, más tarde, acceder a él mediante una petición directa a el fichero en upload/. • https://www.exploit-db.com/exploits/10578 http://osvdb.org/61237 http://secunia.com/advisories/37880 http://www.exploit-db.com/exploits/10578 https://exchange.xforce.ibmcloud.com/vulnerabilities/54972 •