CyberRota Analysis
AI-GeneratedA high-privileged remote attacker can exploit improper file type validation to upload a malicious .php file, enabling arbitrary code execution on the affected system. This vulnerability poses a significant risk of full system compromise. Organizations using the affected products should prioritize remediation efforts to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A high privileged remote attacker can upload a .php file and then request it directly from /uploads/<filename>.php to achieve arbitrary code execution due to improper file type validation which could result in full system compromise.