Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8rpf-h452-4m5v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Pligg 2.0.3 allows remote authenticated users to execute arbitrary commands because the template editor can edit any file, as demonstrated by an admin/admin_editor.php the_file=..%2Findex.php&open=Open request.

Pligg 2.0.3 allows remote authenticated users to execute arbitrary commands because the template editor can edit any file, as demonstrated by an admin/admin_editor.php the_file=..%2Findex.php&open=Open request.

EPSS

Процентиль: 91%
0.06351
Низкий

Связанные уязвимости

CVSS3: 7.2
nvd
больше 5 лет назад

Pligg 2.0.3 allows remote authenticated users to execute arbitrary commands because the template editor can edit any file, as demonstrated by an admin/admin_editor.php the_file=..%2Findex.php&open=Open request.

EPSS

Процентиль: 91%
0.06351
Низкий