CVE-2019-9185
07.03.2019, 23:29
Controller/Async/FilesystemManager.php in the filemanager in Bolt before 3.6.5 allows remote attackers to execute arbitrary PHP code by renaming a previously uploaded file to have a .php extension.Enginsight
Vendor | Product | Version |
---|---|---|
boltcms | bolt | 𝑥 < 3.6.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References