Skip to content

Instantly share code, notes, and snippets.

> [Suggested description]
> BlogEngine.NET 3.3.8.0 allow an editor to create any folder with "files" prefix under ~/App_Data/,
> related to BlogEngine/BlogEngine.NET/AppCode/Api/FileManagerController.cs.
>
> ------------------------------------------
>
> [Vulnerability Type]
> Improper Input Validation
>
> ------------------------------------------
> [Suggested description]
> BlogEngine.NET 3.3.8.0 allow an administrator to create account with arbitrary name,
> attacker can then upload a crafted PNG to achieve remote code execution, related to BlogEngine/BlogEngine.NET/AppCode/Api/UploadController.cs.
>
> ------------------------------------------
>
> [Vulnerability Type]
> Directory Traversal
>
> ------------------------------------------