CVE-2008-3093
EUVD-2008-308309.07.2008, 19:33
Unrestricted file upload vulnerability in ImperialBB 2.3.5 and earlier allows remote authenticated users to upload and execute arbitrary PHP code by placing a .php filename in the Upload_Avatar parameter and sending the image/gif content type.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| phplizardo | imperialbb | 𝑥 ≤ 2.3.5 |
𝑥
= Vulnerable software versions
References