9.3
CVSSv2

CVE-2008-0632

Published: 06/02/2008 Updated: 15/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unrestricted file upload vulnerability in cp_upload_image.php in LightBlog 9.5 allows remote malicious users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the blog's root directory.

Vulnerable Product Search on Vulmon Subscribe to Product

lightblog lightblog 9.5

Exploits

LightBlog 95 - REMOTE FILE UPLOAD VULNERABILITY by Omni 1) Infos --------- Date : 2008-01-30 Product : LightBlog Version : v 95 Vendor : wwwpublicwarehousecouk/ Vendor Status : 2008-01-31 Informed! 2008-01-31 Patch received from vendor! 2008-02-01 Published! Description : Lightblog provides webmasters who don't have SQL databases wit ...