Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-359q-vfg7-7chr

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code embedded in bbcode in the email parameter, which is processed by the preg_replace function with the eval switch.

Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code embedded in bbcode in the email parameter, which is processed by the preg_replace function with the eval switch.

EPSS

Процентиль: 94%
0.14269
Средний

Дефекты

CWE-94

Связанные уязвимости

nvd
около 17 лет назад

Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code embedded in bbcode in the email parameter, which is processed by the preg_replace function with the eval switch.

EPSS

Процентиль: 94%
0.14269
Средний

Дефекты

CWE-94