Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6vj2-4wv8-fm3g

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple eval injection vulnerabilities in phpScheduleIt before 1.2.11 allow remote attackers to execute arbitrary code via (1) the end_date parameter to reserve.php and (2) the start_date and end_date parameters to check.php. NOTE: the start_date/reserve.php vector is already covered by CVE-2008-6132.

Multiple eval injection vulnerabilities in phpScheduleIt before 1.2.11 allow remote attackers to execute arbitrary code via (1) the end_date parameter to reserve.php and (2) the start_date and end_date parameters to check.php. NOTE: the start_date/reserve.php vector is already covered by CVE-2008-6132.

EPSS

Процентиль: 91%
0.06415
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
почти 17 лет назад

Multiple eval injection vulnerabilities in phpScheduleIt before 1.2.11 allow remote attackers to execute arbitrary code via (1) the end_date parameter to reserve.php and (2) the start_date and end_date parameters to check.php. NOTE: the start_date/reserve.php vector is already covered by CVE-2008-6132.

EPSS

Процентиль: 91%
0.06415
Низкий

Дефекты

CWE-94