{"id":"CVE-2016-7902","details":"Unrestricted file upload vulnerability in the fileUnzip-\u003eunzip method in Dotclear before 2.10.3 allows remote authenticated users with permissions to manage media items to execute arbitrary code by uploading a ZIP file containing a file with a crafted extension, as demonstrated by .php.txt or .php%20.","modified":"2026-07-08T12:27:41.783547Z","published":"2017-01-04T21:59:00.213Z","references":[{"type":"WEB","url":"http://www.securityfocus.com/bid/93440"},{"type":"FIX","url":"https://dotclear.org/blog/post/2016/11/01/Dotclear-2.10.3"},{"type":"FIX","url":"https://hg.dotclear.org/dotclear/rev/a9db771a5a70"},{"type":"ARTICLE","url":"http://www.openwall.com/lists/oss-security/2016/10/05/6"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/dotclear/dotclear","events":[{"introduced":"0"},{"last_affected":"9da09233ec6987980a8c6d497a20c144ad71aaea"}],"database_specific":{"cpe":"cpe:2.3:a:dotclear:dotclear:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"2.10.2"}],"source":"CPE_RANGE"}}],"versions":["2.10.2","2.10.1","2.10.0","2.4.0","2.3.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-7902.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}