Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2qgc-5q8h-3gp6

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

UploadFile.php in MoniWiki 1.0.9.2 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.hwp, which allows remote attackers to upload and execute arbitrary code.

UploadFile.php in MoniWiki 1.0.9.2 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.hwp, which allows remote attackers to upload and execute arbitrary code.

EPSS

Процентиль: 82%
0.01796
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

UploadFile.php in MoniWiki 1.0.9.2 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.hwp, which allows remote attackers to upload and execute arbitrary code.

debian
больше 20 лет назад

UploadFile.php in MoniWiki 1.0.9.2 and earlier, when used with Apache ...

EPSS

Процентиль: 82%
0.01796
Низкий