CVE-2011-5005

Unrestricted file upload vulnerability in QuiXplorer 2.3 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension using the upload action to index.php, then accessing it via a direct request to the file in an unspecified directory.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
VendorProductVersion
claudio_klinglerquixplorer
𝑥
≤ 2.3
claudio_klinglerquixplorer
1.0
claudio_klinglerquixplorer
1.1
claudio_klinglerquixplorer
1.2
claudio_klinglerquixplorer
1.4
claudio_klinglerquixplorer
1.5
claudio_klinglerquixplorer
1.6
claudio_klinglerquixplorer
2.0
claudio_klinglerquixplorer
2.1.1
claudio_klinglerquixplorer
2.2
mads_brunnt3quixplorer
1.0.0
mads_brunnt3quixplorer
1.0.1
mads_brunnt3quixplorer
1.0.2
mads_brunnt3quixplorer
1.2.0
mads_brunnt3quixplorer
1.3.0
mads_brunnt3quixplorer
1.4.0
mads_brunnt3quixplorer
1.5.0
mads_brunnt3quixplorer
1.6.0
mads_brunnt3quixplorer
1.7.0
mads_brunnt3quixplorer
1.7.1
𝑥
= Vulnerable software versions