HelpDEZk 1.1.1 allows remote authenticated users to execute arbitrary PHP code by uploading a .php attachment and then requesting it in the helpdezk\app\uploads\helpdezk\attachments\ directory.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-09-05T07:00:00Z

Updated: 2024-09-16T18:23:41.191Z

Reserved: 2017-09-05T00:00:00Z

Link: CVE-2017-14146

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-09-05T07:29:00.243

Modified: 2017-09-06T18:23:08.307

Link: CVE-2017-14146

cve-icon Redhat

No data.