Unrestricted file upload vulnerability in app/lib/mlf.pl in C-BOARD Moyuku before 1.03b3 allows remote attackers to execute arbitrary code by uploading a file with a 0 character in its name.
Name | Vendor | Start Version | End Version |
---|---|---|---|
C-board_moyuku | C-board_moyuku_project | * | 1.03 (including) |
C-board_moyuku | C-board_moyuku_project | 1.01-b1 (including) | 1.01-b1 (including) |
C-board_moyuku | C-board_moyuku_project | 1.01-b2 (including) | 1.01-b2 (including) |
C-board_moyuku | C-board_moyuku_project | 1.01-b3 (including) | 1.01-b3 (including) |
C-board_moyuku | C-board_moyuku_project | 1.01-b4 (including) | 1.01-b4 (including) |
C-board_moyuku | C-board_moyuku_project | 1.01-b6 (including) | 1.01-b6 (including) |
C-board_moyuku | C-board_moyuku_project | 1.02-b1 (including) | 1.02-b1 (including) |
C-board_moyuku | C-board_moyuku_project | 1.03-b1 (including) | 1.03-b1 (including) |