#VU18857 Arbitrary file upload in LionScripts: IP Blocker Lite
Published: June 20, 2019 / Updated: June 24, 2019
LionScripts: IP Blocker Lite
LionScripts.com
Description
The vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to insufficient validation of file uploads. A remote privileged attacker can upload and execute arbitrary files on the server.
Note: this vulnerability can be exploited by a remote non-authenticated attacker due to CSRF issue (vulnerability #1).