TUTOS 1.1 allows remote attackers to execute arbitrary code by uploading the code using file_new.php, then directly accessing the uploaded code via a request to the repository containing the code.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tutos | Gero_kohnert | 1.1 (including) | 1.1 (including) |