PT-2026-69476 · Phpfm · Phpfm
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
dulldusk/phpfm versions prior to 1.8.1
Description
An unrestricted file upload issue allows an unauthenticated remote attacker to execute arbitrary PHP code on the server. The application is configured by default with an empty upload extension filter
upload ext filter and no authentication enabled via the auth pass variable. This allows an attacker to upload a PHP webshell and execute it by accessing the uploaded file path.Recommendations
Update dulldusk/phpfm to a version later than 1.8.0.
Configure the
upload ext filter to restrict allowed file extensions.
Set a strong password for the auth pass variable to enable authentication.Exploit
Fix
RCE
Unrestricted File Upload
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Phpfm