Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jra89

#24306of 53,632
9.8Total CVSS
Vulnerabilities · 1
PT-2019-15875
9.8
2019-12-04
Php · Class.Upload.Php · CVE-2019-19576
**Name of the Vulnerable Software and Affected Versions** class.upload.php versions prior to 1.0.3 class.upload.php versions 2.x prior to 2.0.4 **Description** The issue is related to the omission of .phar from the set of dangerous file extensions in class.upload.php, which can be exploited for remote code execution. **Recommendations** For versions prior to 1.0.3, update to version 1.0.3 or later. For versions 2.x prior to 2.0.4, update to version 2.0.4 or later.