Month Of Abysssec Undisclosed Bugs – aradBlog versions 1.2.8 and below suffer from shell upload and remote administrative access vulnerabilities.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/93722/moaub10-aradblog.pdf
Source: https://packetstormsecurity.com/files/93722/Month-Of-Abysssec-Undisclosed-Bugs-aradBlog-1.2.8.html

