CVE-2007-0764

N/A Unknown
Published: February 06, 2007 Modified: April 23, 2026
View on NVD

Description

Unrestricted file upload vulnerability in F3Site 2.1 and earlier allows remote authenticated administrators to upload and execute arbitrary PHP scripts via GIF86 header in a file in the uplf parameter, which can be later accessed via a relative pathname in the dir parameter in adm.php.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/34669
Source: cve@mitre.org
http://osvdb.org/34669
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/32189
Source: af854a3a-2127-422b-91ae-364da2661108
https://www.exploit-db.com/exploits/3255
Source: af854a3a-2127-422b-91ae-364da2661108

6 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
5.4%
90th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

f3site