(Critical) Remote Code Execution Through Old TinyMCE upload bypass
High
8
8x8
Submitted None
Team Summary
Official summary from 8x8
A third party marketing site utilized an outdated version of TinyMCE that was vulnerable to CVE-2011-4906.
Actions:
Reported by
konqi
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Code Injection