Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber prior to 1.3.2.
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://huntr.dev/bounties/d5be2e96-1f2f-4357-a385-e184cf0119aa | patch third party advisory exploit |
https://github.com/microweber/microweber/commit/0d279ac81052ce7ee97c18c811a9b8e912189da0 | third party advisory |