Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3jhw-mc8h-c9h7

Опубликовано: 15 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Siyucms v6.1.7 was discovered to contain a remote code execution (RCE) vulnerability in the background. SIYUCMS is a content management system based on ThinkPaP5 AdminLTE. SIYUCMS has a background command execution vulnerability, which can be used by attackers to gain server privileges

Siyucms v6.1.7 was discovered to contain a remote code execution (RCE) vulnerability in the background. SIYUCMS is a content management system based on ThinkPaP5 AdminLTE. SIYUCMS has a background command execution vulnerability, which can be used by attackers to gain server privileges

EPSS

Процентиль: 85%
0.02362
Низкий

7.2 High

CVSS3

Дефекты

CWE-521

Связанные уязвимости

CVSS3: 7.2
nvd
около 3 лет назад

Siyucms v6.1.7 was discovered to contain a remote code execution (RCE) vulnerability in the background. SIYUCMS is a content management system based on ThinkPaP5 AdminLTE. SIYUCMS has a background command execution vulnerability, which can be used by attackers to gain server privileges

EPSS

Процентиль: 85%
0.02362
Низкий

7.2 High

CVSS3

Дефекты

CWE-521