CVE-2011-0678
N/A
N/A
Summary
Unrestricted file upload vulnerability in the EasyEdit module in Lomtec ActiveWeb Professional 3.0 allows remote attackers to execute arbitrary code by uploading an executable file via the UploadDirectory and Accepted Extensions fields in the getImagefile component of EasyEdit.cfm.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.exploitdevelopment.com/Vulnerabilities/2010-WEB-002.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65013
- http://www.securityfocus.com/bid/45985
- http://secunia.com/advisories/43031
- http://www.kb.cert.org/vuls/id/528212
- http://osvdb.org/70669
- http://www.vupen.com/english/advisories/2011/0217
References
- http://www.exploitdevelopment.com/Vulnerabilities/2010-WEB-002.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65013
- http://www.securityfocus.com/bid/45985
- http://secunia.com/advisories/43031
- http://www.kb.cert.org/vuls/id/528212
- http://osvdb.org/70669
- http://www.vupen.com/english/advisories/2011/0217
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.