CVE-2007-3163

Incomplete blacklist vulnerability in the filemanager in Frederico Caldeira Knabben FCKeditor 2.4.2 allows remote attackers to upload arbitrary .php files via an alternate data stream syntax, as demonstrated by .php::$DATA filenames, a related issue to CVE-2006-0658.
Configurations

Configuration 1

cpe:2.3:a:frederico_caldeira_knabben:fckeditor:2.4.2:*:*:*:*:*:*:*

Information

Published : 2007-06-11 10:30

Updated : 2017-07-29 01:32


NVD link : CVE-2007-3163

Mitre link : CVE-2007-3163

Products Affected
No products.