Back

CVE-2004-2700

Unrestricted file upload vulnerability in AspDotNetStorefront 3.3 allows remote authenticated administrators to upload arbitrary files with executable extensions via admin/images.aspx.

Published: Dec 31, 2004 Modified: Jun 16, 2026
CWE-264

CVSS Metrics

Affected Products (1)

Vendor Product Version
aspdotnetstorefront aspdotnetstorefront 3.3

GitHub Security Advisory GHSA-7348-84cp-xjx4

Unrestricted file upload vulnerability in AspDotNetStorefront 3.3 allows remote authenticated...

Risk Scores

CVSS Score 9.0 / 10
EPSS Score 1.71%

Top 25% most likely to be exploited

Threat Score 36.5 / 100

Data Sources

NVD EPSS GitHub