Lucene search

K
cvelistMitreCVELIST:CVE-2014-8085
HistoryJan 05, 2015 - 8:00 p.m.

CVE-2014-8085

2015-01-0520:00:00
mitre
www.cve.org
6

AI Score

7.5

Confidence

Low

EPSS

0.012

Percentile

85.4%

Unrestricted file upload vulnerability in the CWebContact::doModel method in oc-includes/osclass/controller/contact.php in OSClass before 3.4.3 allows remote attackers to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a direct request to the file in an unspecified directory.

AI Score

7.5

Confidence

Low

EPSS

0.012

Percentile

85.4%

Related for CVELIST:CVE-2014-8085