CVE-2006-1363
Last modified
CVE-2006-1363 is a vulnerability of currently unknown severity. images.php in Justin White (aka YTZ) Free Web Publishing System (FreeWPS) 2.11 allows remote attackers to execute arbitrary PHP code by uploading a .php file into the /upload directory as specified in the dirPath parameter, then performing a direct request to that file.. EPSS estimates a 2.79% chance of exploitation in the next 30 days.
Description
images.php in Justin White (aka YTZ) Free Web Publishing System (FreeWPS) 2.11 allows remote attackers to execute arbitrary PHP code by uploading a .php file into the /upload directory as specified in the dirPath parameter, then performing a direct request to that file.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Justin White | Freewps | 2.11 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-1363?
How severe is CVE-2006-1363?
How do I fix CVE-2006-1363?
Are you affected by CVE-2006-1363?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
