Total vulnerabilities in the database
Website Baker Project does not properly verify the file extensions of uploaded files, which allows remote attackers to upload and execute arbitrary PHP code.
CVSS v2:
No CWE or OWASP classifications available.