Unrestricted file upload vulnerability in fisheye/upload.php in Bitweaver R2 CMS allows remote attackers to upload arbitrary files by using the image/gif content type, and possibly other image and PDF content types, as demonstrated by uploading a .htaccess file.
References
Configurations
Information
Published : 2008-01-04 03:46
Updated : 2018-10-15 14:55
NVD link : CVE-2007-6650
Mitre link : CVE-2007-6650
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
bitweaver
- r2_cms