CVE-2009-3447

Unrestricted file upload vulnerability in RADactive I-Load before 2008.2.5.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, and then sending a request for a predictable filename during a short time window.
Race Condition
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 78%
VendorProductVersion
radactivei-load
𝑥
≤ 2008.2.4.0
radactivei-load
1.6.3
radactivei-load
1.6.3.1
radactivei-load
1.6.3.2
radactivei-load
1.6.3.3
radactivei-load
1.7.0.0
radactivei-load
1.7.0.1
radactivei-load
1.7.0.2
radactivei-load
1.7.0.3
radactivei-load
1.7.0.4
radactivei-load
1.7.0.5
radactivei-load
1.7.0.6
radactivei-load
1.7.0.7
radactivei-load
1.7.0.8
radactivei-load
1.7.0.9
radactivei-load
1.7.0.10
radactivei-load
1.7.0.11
radactivei-load
1.7.0.12
radactivei-load
1.7.5.0
radactivei-load
1.7.5.1
radactivei-load
1.7.5.2
radactivei-load
1.7.6.0
radactivei-load
1.7.6.1
radactivei-load
1.7.7.0
radactivei-load
1.7.7.1
radactivei-load
1.7.7.2
radactivei-load
1.7.7.3
radactivei-load
1.7.7.4
radactivei-load
1.7.7.5
radactivei-load
1.7.7.6
radactivei-load
1.7.7.8
radactivei-load
1.7.7.9
radactivei-load
1.7.7.11
radactivei-load
2008.1.0.0
radactivei-load
2008.1.0.1
radactivei-load
2008.1.0.2
radactivei-load
2008.1.1.0
radactivei-load
2008.1.2.0
radactivei-load
2008.1.2.1
radactivei-load
2008.1.3.0
radactivei-load
2008.2.1.0
radactivei-load
2008.2.1.1
radactivei-load
2008.2.2.0
radactivei-load
2008.2.3.0
radactivei-load
2008.2.3.1
radactivei-load
2008.2.3.2
𝑥
= Vulnerable software versions