Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2833 (le.cms)

BugsAlert Home > CVE-2008-2833 (le.cms)
 
 

admin/upload.php in le.cms 1.4 and earlier allows remote attackers to bypass administrative authentication, and upload and execute arbitrary files in images/, via a nonzero value for the submit0 parameter in conjunction with filenames in the filename and upload parameters.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2833

Learn more about CVE-2008-2833 (le.cms)
 
Tags: cve-2008-2833 le.cms

Related Items

      CVE-2008-4610 (mplayer)

      MAL_ONLINEG

      Vuln: NoticeWare Email Server NG 'PASS' Command Remote Denial of Service Vulnerability

      Celoxis "ni.smessage" Cross-Site Scripting Vulnerability

      VMware Workstation Multiple Vulnerabilities

      FrSIRT - Sun Solaris 10 Adobe Reader Multiple Code Execution Vulnerabilities

      Bugtraq: phpuserbase 1.3 (menu) Remote File Inclusion Vulnerability

 

Pixel