CVE-2017-9364
EUVD-2017-1829902.06.2017, 05:29
Unrestricted File Upload exists in BigTree CMS through 4.2.18: if an attacker uploads an 'xxx.pht' or 'xxx.phtml' file, they could bypass a safety check and execute any code.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bigtreecms | bigtree_cms | 𝑥 ≤ 4.2.18 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration