CVE-2021-25877

AVideo/YouPHPTube 10.0 and prior is affected by Insecure file write. An administrator privileged user is able to write files on filesystem using flag and code variables in file save.php.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:youphptube:youphptube:*:*:*:*:*:*:*:*

History

14 Feb 2024, 01:17

Type Values Removed Values Added
References (MISC) http://avideoyouphptube.comĀ - Broken Link, Product (MISC) http://avideoyouphptube.comĀ - Broken Link, Product, URL Repurposed

Information

Published : 2021-11-01 12:15

Updated : 2024-02-28 18:48


NVD link : CVE-2021-25877

Mitre link : CVE-2021-25877

CVE.ORG link : CVE-2021-25877


JSON object : View

Products Affected

youphptube

  • youphptube
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')