qdPM 9.1 Authenticated Shell Upload

Discussion in 'News Aggregator' started by Packet Storm, 30 Sep 2022.

  1. Packet Storm

    Packet Storm Guest

    A remote code execution vulnerability exists in qdPM versions 9.1 and below. An attacker can upload a malicious PHP code file via the profile photo functionality by leveraging a path traversal vulnerability in the users['photop_preview'] delete photo feature thus allowing bypass of .htaccess protection. NOTE: this issue exists because of an incomplete fix for CVE-2015-3884.

    Continue reading...
     

Share This Page

Loading...