Description
osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter. This is exploitable for remote PHP code execution because an administrator can upload an image that contains PHP code in the EXIF data via index.php?page=ajax&action=ajax_upload.
Remediation
References
Related Vulnerabilities
MySQL CVE-2012-0495 Vulnerability (CVE-2012-0495)
WordPress Plugin Badgearoo Cross-Site Scripting (1.0.8)
PostgreSQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3167)
MySQL CVE-2018-2846 Vulnerability (CVE-2018-2846)
WordPress Plugin BIC Media Widget Cross-Site Scripting (1.0)