CVE-2015-0877
Published Apr 6, 2015
Last updated 10 years ago
Overview
- Description
- Unrestricted file upload vulnerability in app/lib/mlf.pl in C-BOARD Moyuku before 1.03b3 allows remote attackers to execute arbitrary code by uploading a file with a \0 character in its name.
- Source
- vultures@jpcert.or.jp
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Evaluator
- Comment
- <a href="http://cwe.mitre.org/data/definitions/434.html">CWE-434: Unrestricted Upload of File with Dangerous Type</a>
- Impact
- -
- Solution
- -
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:*:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7924CE2-F5B8-4475-B095-735571CC0125", "versionEndIncluding": "1.03" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B884AFD8-C0C1-4B3E-A076-9E091CB78E12" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D0E00FC-A9AB-4C5D-90E2-B8746AB37599" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "121708C5-DE81-4A86-BD19-20D43BBD2CB1" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4AB90604-12AD-4AD9-A406-1B3D2E4D9DCA" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E3B6A4E-48D2-45C6-AA85-677D48EC4F1E" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.02:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4CD5EADA-1599-4511-8244-8184C73DAFB4" }, { "criteria": "cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.03:b1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14B3BBD5-E0CC-4617-8AF3-546CE5AD098F" } ], "operator": "OR" } ] } ]