6.8
CVSSv2

CVE-2008-6902

Published: 06/08/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unrestricted file upload vulnerability in upload_flyer.php in 2532designs 2532|Gigs 1.2.2 Stable allows remote malicious users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in flyers/.

Vulnerable Product Search on Vulmon Subscribe to Product

2532gigs 2532gigs 1.2.2

Exploits

[START] ######################################################################################### [0x01] Informations: Script : 2532|Gigs v12 Stable Download : wwwhotscriptscom/jumpphp?listing_id=65863&jump_type=1 Dork : Powered by 2532|Gigs v122 Vulnerability : Local File Inclusion / Remote File Upload A ...