CVE-2017-14958
EUVD-2017-643402.10.2017, 01:29
lib.php in PivotX 2.3.11 does not properly block uploads of dangerous file types by admin users, which allows remote PHP code execution via an upload of a .php file.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pivotx | pivotx | 2.3.11 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration