Critical severity9.8NVD Advisory· Published Sep 12, 2017· Updated May 13, 2026
CVE-2017-14346
CVE-2017-14346
Description
upload.php in tianchoy/blog through 2017-09-12 allows unrestricted file upload and PHP code execution by using the image/jpeg, image/pjpeg, image/png, or image/gif content type for a .php file.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/imsebao/404team/blob/master/tianchoy-blog-getshell.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.