Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-1000423

Опубликовано: 02 янв. 2018
Источник: debian
EPSS Низкий

Описание

b2evolution version 6.6.0 - 6.8.10 is vulnerable to input validation (backslash and single quote escape) in basic install functionality resulting in unauthenticated attacker gaining PHP code execution on the victim's setup.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
b2evolutionremovedpackage

EPSS

Процентиль: 82%
0.01702
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
около 8 лет назад

b2evolution version 6.6.0 - 6.8.10 is vulnerable to input validation (backslash and single quote escape) in basic install functionality resulting in unauthenticated attacker gaining PHP code execution on the victim's setup.

CVSS3: 9.8
github
больше 3 лет назад

b2evolution version 6.6.0 - 6.8.10 is vulnerable to input validation (backslash and single quote escape) in basic install functionality resulting in unauthenticated attacker gaining PHP code execution on the victim's setup.

EPSS

Процентиль: 82%
0.01702
Низкий