CVE-2023-53971
WebTareas 2.4 contains a file upload vulnerability that allows authenticated users to upload malicious PHP files through the chat photo upload functionality. Attackers can upload a PHP file with arbitrary code to the /files/Messages/ directory and execute it directly through the generated file path.
Vendor
Product
CWE
Yayın Tarihi
2025-12-22 22:16:02
Güncelleme
2025-12-26 17:24:05
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-