Unrestricted file upload vulnerability in admin/uploadImage.html in SearchBlox before 8.2 allows remote attackers to execute arbitrary code by uploading a file with an executable extension and the image/jpeg content type, a different vulnerability than CVE-2013-3590.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0968
Reference (s):
- CERT-VN:VU#697316
- URL: http://www.kb.cert.org/vuls/id/697316

