
CVE-2018-25162 2-Plan Team 1.0.4 contains an arbitrary file upload vulnerability that allows authenticated attackers to upload executable PHP files by sending multipart form data to… https://www.cve.org/CVERecord?id=CVE-2018-25162
Post summary
The tweet references CVE-2018-25162, noting it allows authenticated attackers to upload executable PHP files through multipart form data.
