Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4w3r-jhc2-fjv6

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

PHP file inclusion vulnerability in php121db.php in PHP121 Instant Messenger 2.2 allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the php121dir parameter, which is accessed by the file_exists function.

PHP file inclusion vulnerability in php121db.php in PHP121 Instant Messenger 2.2 allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the php121dir parameter, which is accessed by the file_exists function.

EPSS

Процентиль: 93%
0.10967
Средний

Связанные уязвимости

nvd
почти 19 лет назад

PHP file inclusion vulnerability in php121db.php in PHP121 Instant Messenger 2.2 allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the php121dir parameter, which is accessed by the file_exists function.

EPSS

Процентиль: 93%
0.10967
Средний