Lucene search

K
cvelistMitreCVELIST:CVE-2017-14399
HistorySep 12, 2017 - 9:00 p.m.

CVE-2017-14399

2017-09-1221:00:00
mitre
www.cve.org
2
blackcat cms
file upload
ajax_rename.php
cve-2017-14399

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

42.8%

In BlackCat CMS 1.2.2, unrestricted file upload is possible in backend\media\ajax_rename.php via the extension parameter, as demonstrated by changing the extension from .jpg to .php.

AI Score

8.7

Confidence

High

EPSS

0.001

Percentile

42.8%

Related for CVELIST:CVE-2017-14399