Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6xgp-4gpm-w96h

Опубликовано: 09 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme CraftXtore allows PHP Local File Inclusion. This issue affects CraftXtore: from n/a through 1.7.

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme CraftXtore allows PHP Local File Inclusion. This issue affects CraftXtore: from n/a through 1.7.

EPSS

Процентиль: 31%
0.00118
Низкий

8.1 High

CVSS3

Дефекты

CWE-98

Связанные уязвимости

CVSS3: 8.1
nvd
8 месяцев назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BZOTheme CraftXtore allows PHP Local File Inclusion. This issue affects CraftXtore: from n/a through 1.7.

EPSS

Процентиль: 31%
0.00118
Низкий

8.1 High

CVSS3

Дефекты

CWE-98