CVE-2006-3102
MEDIUM 5.1EPSS 8.5%
Race condition in articles/BitArticle.php in Bitweaver 1.3, when run on Apache with the mod_mime extension, allows remote attackers to execute arbitrary PHP code by uploading arbitrary files with double extensions, which are stored for a small period of time under the webroot in the temp/articles directory.
- CVSS v2.0
- 5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P - EPSS
- 8.45% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2006-06-21
- Updated
- 2024-08-07