MODx Evogallery Module 'uploadify.php' Arbitrary File Upload Vulnerability
BID:65646
Info
MODx Evogallery Module 'uploadify.php' Arbitrary File Upload Vulnerability
| Bugtraq ID: | 65646 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 18 2014 12:00AM |
| Updated: | Feb 18 2014 12:00AM |
| Credit: | TUNISIAN CYBER |
| Vulnerable: |
MODx EvoGallery 0 |
| Not Vulnerable: | |
Discussion
MODx Evogallery Module 'uploadify.php' Arbitrary File Upload Vulnerability
MODx Evogallery module is prone to an arbitrary file upload vulnerability.
An attacker may leverage this issue to upload arbitrary files to the affected computer; this can result in arbitrary code execution within the context of the vulnerable application.
MODx Evogallery module is prone to an arbitrary file upload vulnerability.
An attacker may leverage this issue to upload arbitrary files to the affected computer; this can result in arbitrary code execution within the context of the vulnerable application.
References
MODx Evogallery Module 'uploadify.php' Arbitrary File Upload Vulnerability
References:
References:
- MODx Evogallery Home page (MODx)