← Back to CVE List

CVE-2017-14704

Published: 2017-09-26T14:29Z
Last Modified: 2024-11-21T03:13Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Multiple unrestricted file upload vulnerabilities in the (1) imageSubmit and (2) proof_submit functions in Claydip Laravel Airbnb Clone 1.0 allow remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/profile. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt