Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5vqg-94rp-vjg6

Опубликовано: 17 окт. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Chamilo 1.11.16 is affected by an authenticated local file inclusion vulnerability which allows authenticated users with access to 'big file uploads' to copy/move files from anywhere in the file system into the web directory.

Chamilo 1.11.16 is affected by an authenticated local file inclusion vulnerability which allows authenticated users with access to 'big file uploads' to copy/move files from anywhere in the file system into the web directory.

EPSS

Процентиль: 62%
0.00435
Низкий

8.8 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 8.8
nvd
больше 3 лет назад

Chamilo 1.11.16 is affected by an authenticated local file inclusion vulnerability which allows authenticated users with access to 'big file uploads' to copy/move files from anywhere in the file system into the web directory.

EPSS

Процентиль: 62%
0.00435
Низкий

8.8 High

CVSS3

Дефекты

CWE-434