image.php in vBulletin 3.0.9 and earlier allows remote attackers with access to the administrator panel to upload arbitrary files via the upload action.
References
Link | Resource |
---|---|
http://morph3us.org/advisories/20050917-vbulletin-3.0.8.txt | Exploit Patch Vendor Advisory |
http://secunia.com/advisories/16873/ | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=112715150320677&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/22325 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-09-21 15:03
Updated : 2017-07-10 18:33
NVD link : CVE-2005-3021
Mitre link : CVE-2005-3021
JSON object : View
CWE
Products Affected
jelsoft
- vbulletin