← Back to CVE List

CVE-2017-17727

Published: 2017-12-18T05:29Z
Last Modified: 2024-11-21T03:18Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
DedeCMS through 5.6 allows arbitrary file upload and PHP code execution by embedding the PHP code in a .jpg file, which is used in the templet parameter to member/article_edit.php. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt