Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Pca

Pesquisador dePCA PERUVIAN CYBER ARMY
#35679de 53,624
7.5CVSS total
Vulnerabilidades · 1
PT-2011-5160
7.5
2011-12-25
Quixplorer · Quixplorer · CVE-2011-5005
**Name of the Vulnerable Software and Affected Versions** QuiXplorer versions 2.3 and earlier **Description** The issue allows remote attackers to execute arbitrary code by uploading a file with an executable extension using the "upload action" to "index.php", then accessing it via a direct request to the file in an unspecified directory. **Recommendations** For QuiXplorer versions 2.3 and earlier, consider restricting or disabling the file upload functionality, specifically the upload action to "index.php", until a fix is available. Additionally, restrict access to directories where uploaded files are stored to minimize the risk of exploitation.