Unrestricted file upload vulnerability in uploadrequest.asp in Layton HelpBox 3.7.1 allows remote authenticated users to upload and execute arbitrary ASP files, related to not properly checking file extensions.Referenceshttp://secunia.com/secunia_research/2007-94/advisory/https://exchange.xforce.ibmcloud.com/vulnerabilities/39536http://www.securityfocus.com/bid/27187http://secunia.com/advisories/27699