Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-23x5-qv54-6pcg

Опубликовано: 14 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An arbitrary file upload vulnerability in /dede/file_manage_control.php of DedeCMS v5.7.109 allows attackers to execute arbitrary code via uploading a crafted PHP file.

An arbitrary file upload vulnerability in /dede/file_manage_control.php of DedeCMS v5.7.109 allows attackers to execute arbitrary code via uploading a crafted PHP file.

EPSS

Процентиль: 70%
0.00656
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

An arbitrary file upload vulnerability in /dede/file_manage_control.php of DedeCMS v5.7.109 allows attackers to execute arbitrary code via uploading a crafted PHP file.

EPSS

Процентиль: 70%
0.00656
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-434