Required CVE Record Information
Description
AVideo/YouPHPTube 10.0 and prior is affected by Insecure file write. An administrator privileged user is able to write files on filesystem using flag and code variables in file save.php.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- http://avideoyouphptube.com x_transferred
- https://synacktiv.com x_transferred
- https://www.synacktiv.com/sites/default/files/2021-01/YouPHPTube_Multiple_Vulnerabilities.pdf x_transferred