Security Advisory

CVE-2013-3590

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-08-28 01:00:00
Last updated 2024-09-16 22:14:17
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

Unrestricted file upload vulnerability in admin/uploadImage.html in SearchBlox before 7.5 build 1 allows remote attackers to execute arbitrary code by uploading an executable file with the image/jpeg content type, and then accessing this file via unspecified vectors, as demonstrated by access to a JSP file.