CyberRota Analysis
AI-GeneratedYesWiki versions prior to 4.6.7 are vulnerable to an unrestricted file upload flaw that enables authenticated administrators to upload remote files into the web-accessible files/ directory through the Bazar CSV import preview feature. This vulnerability allows attackers to execute arbitrary PHP code by referencing a remote .php URL in a CSV file, posing a significant risk of server compromise. Organizations using YesWiki should prioritize patching this vulnerability to mitigate the potential for exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
YesWiki before 4.6.7 contains an unrestricted file upload vulnerability that allows authenticated admins to write remote files into the web-accessible files/ directory via Bazar CSV import preview. Attackers can import a CSV whose file or image field references a remote .php URL, which is saved without extension checks and executed as server-side code.