Skip to main content
Loading…
    CVE-2017-7402 — Pixie 1.0.4 allows remote authenticated users to upload and execute arbitrary PHP code via the POST data in an admin/index.php?s=publish&x=filemanager request for a filename with a double extensio — CVE Database · The Intelligence Room