Early Access — Mondoo Vulnerability Intelligence is currently in preview.
eUpload 1.0 stores the password.txt password file in plaintext under the web document root, which allows remote attackers to overwrite arbitrary files by reading password.txt.
Exploitability
AV:NAC:LAu:NImpact
C:PI:PA:P7.5/AV:N/AC:L/Au:N/C:P/I:P/A:P