CVE-2011-5005
25.12.2011, 01:55
Unrestricted file upload vulnerability in QuiXplorer 2.3 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension using the upload action to index.php, then accessing it via a direct request to the file in an unspecified directory.Enginsight
Vendor | Product | Version |
---|---|---|
claudio_klingler | quixplorer | 𝑥 ≤ 2.3 |
claudio_klingler | quixplorer | 1.0 |
claudio_klingler | quixplorer | 1.1 |
claudio_klingler | quixplorer | 1.2 |
claudio_klingler | quixplorer | 1.4 |
claudio_klingler | quixplorer | 1.5 |
claudio_klingler | quixplorer | 1.6 |
claudio_klingler | quixplorer | 2.0 |
claudio_klingler | quixplorer | 2.1.1 |
claudio_klingler | quixplorer | 2.2 |
mads_brunn | t3quixplorer | 1.0.0 |
mads_brunn | t3quixplorer | 1.0.1 |
mads_brunn | t3quixplorer | 1.0.2 |
mads_brunn | t3quixplorer | 1.2.0 |
mads_brunn | t3quixplorer | 1.3.0 |
mads_brunn | t3quixplorer | 1.4.0 |
mads_brunn | t3quixplorer | 1.5.0 |
mads_brunn | t3quixplorer | 1.6.0 |
mads_brunn | t3quixplorer | 1.7.0 |
mads_brunn | t3quixplorer | 1.7.1 |
𝑥
= Vulnerable software versions