CVE-2018-20166 | Rukovoditel 2.3.1 File Upload save Filename unrestricted upload (EDB-46011)
A vulnerability, which was classified as critical, was found in Rukovoditel 2.3.1. This affects an unknown part of the file index.php?module=configuration/save of the component File Upload. The manipulation as part of Filename leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2018-20166. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.