Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3c6c-24gr-prmj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows remote attackers to upload and execute arbitrary PHP code in the img/ folder.

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows remote attackers to upload and execute arbitrary PHP code in the img/ folder.

EPSS

Процентиль: 89%
0.04469
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows remote attackers to upload and execute arbitrary PHP code in the img/ folder.

EPSS

Процентиль: 89%
0.04469
Низкий