Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4x62-hpqm-w7cr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0, under specialized conditions, could allow an authenticated user to create a maliciously crafted file name which would be misinterpreted as jsp content and executed. IBM X-Force ID: 174397.

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0, under specialized conditions, could allow an authenticated user to create a maliciously crafted file name which would be misinterpreted as jsp content and executed. IBM X-Force ID: 174397.

EPSS

Процентиль: 61%
0.00415
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.2
nvd
около 6 лет назад

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0, under specialized conditions, could allow an authenticated user to create a maliciously crafted file name which would be misinterpreted as jsp content and executed. IBM X-Force ID: 174397.

EPSS

Процентиль: 61%
0.00415
Низкий

Дефекты

CWE-269