Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-34f9-54m9-rwj4

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

cat_for_gen.php in Annuaire Netref 4.2 allows remote attackers to execute arbitrary PHP code by setting the ad_direct parameter to reference cat_for_gen.php, then including the code in the m_for_racine parameter, which is then written to cat_for_gen.php.

cat_for_gen.php in Annuaire Netref 4.2 allows remote attackers to execute arbitrary PHP code by setting the ad_direct parameter to reference cat_for_gen.php, then including the code in the m_for_racine parameter, which is then written to cat_for_gen.php.

EPSS

Процентиль: 88%
0.042
Низкий

Связанные уязвимости

nvd
почти 21 год назад

cat_for_gen.php in Annuaire Netref 4.2 allows remote attackers to execute arbitrary PHP code by setting the ad_direct parameter to reference cat_for_gen.php, then including the code in the m_for_racine parameter, which is then written to cat_for_gen.php.

EPSS

Процентиль: 88%
0.042
Низкий