Lucene search

K
cvelistMitreCVELIST:CVE-2005-1881
HistoryOct 03, 2022 - 4:22 p.m.

CVE-2005-1881

2022-10-0316:22:41
mitre
www.cve.org
yapig
file extension
restriction bypass
vulnerability
php code execution

7.4 High

AI Score

Confidence

Low

0.27 Low

EPSS

Percentile

96.8%

upload.php in YaPiG 0.92b, 0.93u and 0.94u does not properly restrict the file extension for uploaded image files, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code.

7.4 High

AI Score

Confidence

Low

0.27 Low

EPSS

Percentile

96.8%

Related for CVELIST:CVE-2005-1881