Vulnerabilities (CVE)

Filtered by vendor Metaforum Subscribe
Filtered by product Metaforum
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-1552 1 Metaforum 1 Metaforum 2025-04-09 7.5 HIGH N/A
Unrestricted file upload vulnerability in usercp.php in MetaForum 0.513 Beta restricts file types based on the MIME type in the Content-type HTTP header, which allows remote attackers to upload and execute arbitrary scripts via an image MIME type with a filename containing an executable extension such as .php.