Unrestricted file upload vulnerability in forum_write.php in Maran PHP Forum allows remote attackers to upload and execute arbitrary PHP files via a trailing %00 in a filename in the page parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Php_forum |
Maran |
* |
* |
References