QuickerBB version <= 0.7.2 is vulnerable to arbitrary file writes which can lead to remote code execution. This can lead to the complete takeover of the server hosting QuickerBB.
References
Link | Resource |
---|---|
https://github.com/halojoy/QuickerBB/issues/10 | Third Party Advisory |
Configurations
Information
Published : 2017-11-17 10:29
Updated : 2017-12-02 04:47
NVD link : CVE-2017-1000169
Mitre link : CVE-2017-1000169
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
quickerbb_project
- quickerbb