VULNERABILITY INTELLIGENCE

CVE-2009-1663

CVSS score6.8 MEDIUM
EPSS probability2.85%
CISA KEVNot currently listed
Published2009-05-18
Last modified2026-06-16

Description

Unrestricted file upload vulnerability in myaccount.php in Easy Scripts Answer and Question Script allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the uploads/[username] directory.