First published: Tue Jan 22 2008(Updated: )
Unrestricted file upload vulnerability in PHP F1 Max's File Uploader allows remote attackers to upload and execute arbitrary PHP files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php F1 Maxs File Uploader |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-0373 is considered high due to its ability to allow remote attackers to execute arbitrary PHP files.
To fix CVE-2008-0373, restrict file uploads to only allow specific file types and implement proper validation checks.
The potential impacts of CVE-2008-0373 include unauthorized access to the server and execution of malicious scripts.
All versions of PHP F1 Max's File Uploader are affected by CVE-2008-0373 as it allows unrestricted file uploads.
CVE-2008-0373 can be exploited through an unrestricted file upload attack, allowing attackers to upload and execute malicious PHP scripts.