PT-2015-4933 · C Board · C-Board Moyuku
Shoji Baba
·
Published
2015-04-06
·
Updated
2015-04-06
·
CVE-2015-0877
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
C-BOARD Moyuku versions prior to 1.03b3
Description
The issue concerns an unrestricted file upload vulnerability. This allows remote attackers to execute arbitrary code by uploading a file with a 0 character in its name.
Recommendations
For versions prior to 1.03b3, update to version 1.03b3 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
C-Board Moyuku