Vulnerabilities > CVE-2007-3432 - Unspecified vulnerability in Pluxml 0.3.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN pluxml
exploit available
Summary
Unrestricted file upload vulnerability in admin/images.php in Pluxml 0.3.1 allows remote attackers to upload and execute arbitrary PHP code via a .jpg filename.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Pluxml 0.3.1 Remote Code Execution Exploit. CVE-2007-3432,CVE-2007-3542. Webapps exploit for php platform |
file | exploits/php/webapps/4096.php |
id | EDB-ID:4096 |
last seen | 2016-01-31 |
modified | 2007-06-24 |
platform | php |
port | |
published | 2007-06-24 |
reporter | DarkFig |
source | https://www.exploit-db.com/download/4096/ |
title | Pluxml 0.3.1 - Remote Code Execution Exploit |
type | webapps |
References
- http://osvdb.org/42420
- http://osvdb.org/42420
- http://www.securityfocus.com/archive/1/472205/100/0/threaded
- http://www.securityfocus.com/archive/1/472205/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35016
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35016
- https://www.exploit-db.com/exploits/4096
- https://www.exploit-db.com/exploits/4096