Description
Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0
Affected products
- Blueimp / Blueimp jQuery-File-Uploadunspecified – 9.22.0
Exploits & PoCs
- nucleiBlueimp jQuery-File-Upload v9.22.0 - Unrestricted File Uploadby thewindghost
References
- MISChttp://www.securityfocus.com/bid/106629
- VENDOR_ADVISORYhttps://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html
- EXPLOIThttps://www.exploit-db.com/exploits/46182/
- MISChttps://wpvulndb.com/vulnerabilities/9136
- EXPLOIThttps://www.exploit-db.com/exploits/45790/
- MISChttp://www.vapidlabs.com/advisory.php?v=204
- MISChttp://www.securityfocus.com/bid/105679