Home / Early Warning / Vulnerabilidades / CVE-2011-2933

CVE-2011-2933

Type: 
Unrestricted Upload of File with Dangerous Type
Severity: 
Medium
Publication date: 
01/14/2020
Last modified: 
01/21/2020
Description
An Arbitrary File Upload vulnerability exists in admin/media/upload.php in WebsiteBaker 2.8.1 and earlier due to a failure to restrict uploaded files with .htaccess, .php4, .php5, and .phtl extensions.
Impact
Access Vector: Through network
Access Complexity: Low
Authentication: Requires a single instance to exploit
Impact Type: Partially affects on system integrity + Partially affects on system confidentiality + Partially affects on system availability
Vulnerable software and versions
  • cpe:2.3:a:websitebaker:websitebaker:*:*:*:*:*:*:*:*
To consult the complete list of products and versions see this page
References to Advisories, Solutions, and Tools
Explanation of fields