CyberSec.Space Logo
Back to CVE Browser

CVE-2008-3232

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.0160%
EPSS Percentile41.65th
PublishedJul 18, 2008
Last ModifiedApr 23, 2026

Vulnerability Description

Unrestricted file upload vulnerability in ecrire/images.php in Dotclear 1.2.7.1 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images.

Affected Platforms (CPE)

πŸ“¦
Dotclear

Dotclear

<= 1.2.7
πŸ“¦
Dotclear

Dotclear

= 1.2.1
πŸ“¦
Dotclear

Dotclear

= 1.2.2
πŸ“¦
Dotclear

Dotclear

= 1.2.3
πŸ“¦
Dotclear

Dotclear

= 1.2.4
πŸ“¦
Dotclear

Dotclear

= 1.2.5
πŸ“¦
Dotclear

Dotclear

= 1.2.6

References & Advisories

Related Vulnerabilities