upload.cgi in Mega Upload Progress Bar before 1.45 allows remote attackers to copy or overwrite arbitrary files via unspecified parameters related to names of uploaded files.
CVSS 2.0
Severity: MEDIUM
Problem Type: CWE-264,
Products Affected
| Vendor | Product | Version |
|---|---|---|
| raditha_dissanayake | mega_upload_progress_bar | 1.43 |
| raditha_dissanayake | mega_upload_progress_bar | 1.35 |
| raditha_dissanayake | mega_upload_progress_bar | 1.44 |
| raditha_dissanayake | mega_upload_progress_bar | 1.30 |