10
CVSSv2

CVE-2009-1314

Published: 17/04/2009 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

body.asp in Web File Explorer 3.1 allows remote malicious users to create arbitrary files and execute arbitrary code via the savefile action with a file parameter containing a filename that has an executable extension.

Vulnerable Product Search on Vulmon Subscribe to Product

webfileexplorer web file explorer 3.1

Exploits

Product Name: WebFileExplorer Version : 31 URL : wwwwebfileexplorercom/ Price : 99 $ USD Credits to : Giovanni Buzzin, "Osirys" osirys[at]autistici[dot]org WebFileExplorer v31, is prone to multiple vulnerabilities At first, an attacker can inject his evil sql code in the login form, bypassing it, he ju ...