Description
The media manager in Serendipity before 0.8 allows remote attackers to upload and execute arbitrary (1) .php or (2) .shtml files.
Remediation
References
Related Vulnerabilities
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2401)
WordPress Plugin Translate Multilingual sites-TranslatePress Cross-Site Scripting (2.0.8)
Oracle Database Server CVE-2015-4857 Vulnerability (CVE-2015-4857)
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2022-0819)