Unrated severityNVD Advisory· Published Dec 31, 2006· Updated Apr 23, 2026
CVE-2006-6879
CVE-2006-6879
Description
Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated users to upload arbitrary PHP scripts to the gfx/ and files/ directories via the userfile parameter.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.securityfocus.com/bid/21789nvdExploitVendor Advisory
- secunia.com/advisories/23486nvdVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/31125nvd
- www.exploit-db.com/exploits/3017nvd
- www.exploit-db.com/exploits/3020nvd
News mentions
0No linked articles in our index yet.