Unrestricted file upload vulnerability in index.php in Atomymaxsite 2.5 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file, as exploited in the wild in October 2012.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Atomymaxsite | Maxtom | * | 2.5 (including) |
Atomymaxsite | Maxtom | 1.50 (including) | 1.50 (including) |
Atomymaxsite | Maxtom | 2.0 (including) | 2.0 (including) |