Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-442x-gw2x-3rxf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.

Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.

EPSS

Процентиль: 73%
0.0079
Низкий

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 8.8
nvd
больше 5 лет назад

Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.

EPSS

Процентиль: 73%
0.0079
Низкий

Дефекты

CWE-74