The Admin panel in PwsPHP 1.2.2 does not properly verify uploaded picture files, which allows remote attackers to upload and possibly execute arbitrary files.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Pwsphp |
Pwsphp |
1.2.2 (including) |
1.2.2 (including) |
References