Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-38rg-8rfh-j366

Опубликовано: 10 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component.

eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component.

EPSS

Процентиль: 42%
0.00205
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-352
CWE-918

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrary code via the DatabaseController.java component.

EPSS

Процентиль: 42%
0.00205
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-352
CWE-918