Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5f2r-j5h2-8p7f

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

mapFiler.php in Mapbender 2.4 to 2.4.4 allows remote attackers to execute arbitrary PHP code via PHP code sequences in the factor parameter, which are not properly handled when accessing a filename that contains those sequences.

mapFiler.php in Mapbender 2.4 to 2.4.4 allows remote attackers to execute arbitrary PHP code via PHP code sequences in the factor parameter, which are not properly handled when accessing a filename that contains those sequences.

EPSS

Процентиль: 88%
0.04272
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
почти 18 лет назад

mapFiler.php in Mapbender 2.4 to 2.4.4 allows remote attackers to execute arbitrary PHP code via PHP code sequences in the factor parameter, which are not properly handled when accessing a filename that contains those sequences.

EPSS

Процентиль: 88%
0.04272
Низкий

Дефекты

CWE-94