Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Nul800

#35292de 53,633
7.5CVSS total
Vulnerabilidades · 1
PT-2018-4163
7.5
2018-08-27
Umbraco · Umbraco · CVE-2014-10074
**Name of the Vulnerable Software and Affected Versions** Umbraco versions prior to 7.2.0 **Description** The issue allows for remote PHP code execution due to the failure of Umbraco.Web.UI/config/umbracoSettings.Release.config to block the upload of .php files. **Recommendations** For versions prior to 7.2.0, update to version 7.2.0 or later to resolve the issue. As a temporary workaround, consider restricting file uploads to prevent the upload of .php files until a patch is applied.