Total vulnerabilities in the database
admin/uploads.php in PHP-Update 2.7 and earlier allows remote attackers to gain privileges by setting the rights[7] parameter to 1 during a login action.
CVSS v2:
No CWE or OWASP classifications available.