Vulnerabilities
Vulnerable Software
Frederico Caldeira Knabben:  Security Vulnerabilities
FCKeditor.Java 2.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed request parameter that contains "ctrl" characters.
CVSS Score
5.0
EPSS Score
0.018
Published
2010-05-26
Incomplete blacklist vulnerability in the filemanager in Frederico Caldeira Knabben FCKeditor 2.4.2 allows remote attackers to upload arbitrary .php files via an alternate data stream syntax, as demonstrated by .php::$DATA filenames, a related issue to CVE-2006-0658.
CVSS Score
5.0
EPSS Score
0.006
Published
2007-06-11


Contact Us

Shodan ® - All rights reserved