Описание
install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters in the sc array parameter.
install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters in the sc array parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2016-7565
- https://github.com/exponentcms/exponent-cms/commit/4ae457ff1bf80e8b61286cd125ca794b25564e86
- https://exponentcms.lighthouseapp.com/projects/61783/changesets/4ae457ff1bf80e8b61286cd125ca794b25564e86
- https://github.com/exponentcms/exponent-cms/releases/tag/v2.4.0
- http://www.openwall.com/lists/oss-security/2016/09/22/6
Связанные уязвимости
CVSS3: 9.8
nvd
почти 9 лет назад
install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters in the sc array parameter.