CVE-2007-6378

NONE

Directory traversal vulnerability in upload.dll in BadBlue 2.72b and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the filename parameter.

公開日: 12/15/2007更新日: 4/9/2025