5
CVSSv2

CVE-2006-2530

Published: 22/05/2006 Updated: 18/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote malicious users to bypass file type checks and upload arbitrary files via a null byte in the file name, as discovered by the Codescan product.

Vulnerable Product Search on Vulmon Subscribe to Product

snitz_communications avatar_mod 1.3