Gli script PHP Mall Naukri Clone Script attraverso 3.0.3 permette illimitato caricamento di un file con un tipo pericoloso in edit_resume_det.php, come dimostrato cambiando .docx a .php. |
https://whitehatck01.blogspot.com/2018/02/naukri-clone-script-303-file-upload.html https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-11514 |
Vulnerabilità: CVE-2018-11514
