Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54j6-6hq9-52fg

Опубликовано: 12 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An unauthenticated remote attacker can upload a arbitrary script file due to improper input validation. The upload destination is fixed and is write only.

An unauthenticated remote attacker can upload a arbitrary script file due to improper input validation. The upload destination is fixed and is write only.

EPSS

Процентиль: 46%
0.00235
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-20
CWE-434

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

An unauthenticated remote attacker can upload a arbitrary script file due to improper input validation. The upload destination is fixed and is write only.

EPSS

Процентиль: 46%
0.00235
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-20
CWE-434