6.8
CVSSv2

CVE-2008-6617

Published: 06/04/2009 Updated: 11/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unrestricted file upload vulnerability in adm/visual/upload.php in SiteXS CMS 0.1.1 allows remote malicious users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/.

Vulnerable Product Search on Vulmon Subscribe to Product

sitexs cms sitexs cms 0.1.1

Exploits

source: wwwsecurityfocuscom/bid/29029/info SiteXS is prone to a vulnerability that lets remote attackers upload and execute arbitrary script code because the application fails to sanitize user-supplied input An attacker can leverage this issue to execute arbitrary code on an affected computer with the privileges of the webserver process ...