Loading HuntDB...

(Critical) Remote Code Execution Through Old TinyMCE upload bypass

High
8
8x8
Submitted None

Team Summary

Official summary from 8x8

A third party marketing site utilized an outdated version of TinyMCE that was vulnerable to CVE-2011-4906.

Reported by konqi

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Code Injection