Unrated severityNVD Advisory· Published Apr 6, 2015· Updated May 6, 2026
CVE-2015-0877
CVE-2015-0877
Description
Unrestricted file upload vulnerability in app/lib/mlf.pl in C-BOARD Moyuku before 1.03b3 allows remote attackers to execute arbitrary code by uploading a file with a \0 character in its name.
Affected products
8cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b1:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b1:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b2:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b3:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b4:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.01:b6:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.02:b1:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:1.03:b1:*:*:*:*:*:*
- cpe:2.3:a:c-board_moyuku_project:c-board_moyuku:*:b2:*:*:*:*:*:*range: <=1.03
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- jvn.jp/en/jp/JVN73261710/index.htmlnvdVendor Advisory
- jvndb.jvn.jp/jvndb/JVNDB-2015-000018nvdVendor Advisory
- sourceforge.jp/projects/cb-moyuku/news/nvdVendor Advisory
News mentions
0No linked articles in our index yet.