VYPR

Wordthumb

by Binarymoon

CVEs (1)

  • CVE-2014-4663Jul 15, 2014
    risk 0.04cvss epss 0.17

    TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the src parameter.