Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5vh9-m4v7-wxrg

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.

MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.

EPSS

Процентиль: 92%
0.08923
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.

debian
больше 20 лет назад

MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not ...

EPSS

Процентиль: 92%
0.08923
Низкий