CVE-2013-3590
28.08.2013, 13:09
Unrestricted file upload vulnerability in admin/uploadImage.html in SearchBlox before 7.5 build 1 allows remote attackers to execute arbitrary code by uploading an executable file with the image/jpeg content type, and then accessing this file via unspecified vectors, as demonstrated by access to a JSP file.Enginsight
Vendor | Product | Version |
---|---|---|
searchblox | searchblox | 𝑥 ≤ 7.5 |
searchblox | searchblox | 6.2:build_1 |
searchblox | searchblox | 6.3:build_1 |
searchblox | searchblox | 6.4:build_1 |
searchblox | searchblox | 6.4:build_2 |
searchblox | searchblox | 7.0 |
searchblox | searchblox | 7.1 |
searchblox | searchblox | 7.2 |
searchblox | searchblox | 7.3 |
searchblox | searchblox | 7.4 |
𝑥
= Vulnerable software versions