7.5
CVSSv2

CVE-2004-1404

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Attachment Mod 2.3.10 module for phpBB, when used with Apache mod_mime, does not properly handle files with multiple file extensions, such as .php.rar, which allows remote malicious users to upload and execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

opentools attachment mod 2.3.7

opentools attachment mod 2.3.8

opentools attachment mod 2.3.10

opentools attachment mod 2.3.9

opentools attachment mod 2.3.4

opentools attachment mod 2.3.5

opentools attachment mod 2.3.6