CVE-2008-6814

JAN DE Graaff Com Simpleboard < 1.0.1 - Improper Input Validation

Title source: rule

Description

Unrestricted file upload vulnerability in image_upload.php in the SimpleBoard (com_simpleboard) component 1.0.1 and earlier for Mambo allows remote attackers to execute arbitrary code by uploading a file with an executable extension and an image/jpeg content type, then accessing this file via a direct request to the file in components/com_simpleboard/, a different vulnerability than CVE-2006-3528.

Exploits (1)

exploitdb WORKING POC VERIFIED
by t0pP8uZz · perlwebappsphp
https://www.exploit-db.com/exploits/6868

Scores

EPSS 0.0212
EPSS Percentile 84.2%

Details

CWE
CWE-20
Status published
Products (5)
jan_de_graaff/com_simpleboard 0.9
jan_de_graaff/com_simpleboard 0.9.1
jan_de_graaff/com_simpleboard 0.9.2
jan_de_graaff/com_simpleboard 1.0 rc1 (3 CPE variants)
jan_de_graaff/com_simpleboard < 1.0.1
Published May 28, 2009
Tracked Since Feb 18, 2026