Vulnerabilities (CVE)

Filtered by vendor Dreamlog Subscribe
Filtered by product Dreamlog
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-3403 1 Dreamlog 1 Dreamlog 2024-02-28 7.5 HIGH N/A
Unrestricted file upload vulnerability in upload.php in dreamLog (aka dreamblog) 0.5 allows remote attackers to upload and execute arbitrary PHP code in uploads/images/ via the uploadedFile[] parameter.