6.4
CVSSv2

CVE-2008-0473

Published: 29/01/2008 Updated: 15/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

RTE_popup_save_file.asp in Web Wiz Rich Text Editor 4.0 allows remote malicious users to upload (1) .html and (2) .htm files via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

web wiz rich text editor 4.0

Exploits

########################## WwWBugReportir ########################################### # # AmnPardaz Security Research Team # # Title: Web Wiz Rich Text Editor(TM) # Vendor: wwwwebwizguidecom/ # Bug: Directory traversal + HTM/HTML file creation on the server # Vulnerable Version: 40 # Exploit: Available # Fix Available: No! Fast Sol ...