Unrestricted file upload vulnerability in the File Manager in the admin panel in Twentyone Degrees Symphony 1.7.01 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension to a directory specified in the destination parameter, then accessing the uploaded file via a direct request, as demonstrated using workspace/masters/.
| Software | From | Fixed in |
|---|---|---|
| 21degrees / symphony | - | 1.7.01.x |
| 21degrees / symphony | 1.5 | 1.5.x |
| 21degrees / symphony | 1.5.06 | 1.5.06.x |
| 21degrees / symphony | 1.6.02 | 1.6.02.x |
| 21degrees / symphony | 1.1 | 1.1.x |
| 21degrees / symphony | 1.7 | 1.7.x |
| 21degrees / symphony | 1.5.05 | 1.5.05.x |