Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8x47-3xr9-w9r6

Опубликовано: 26 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.

EPSS

Процентиль: 84%
0.02221
Низкий

7.2 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 7.2
nvd
больше 3 лет назад

OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain an arbitrary file upload vulnerability via the component /ossn/administrator/com_installer. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file. Note: The project owner believes this is intended behavior of the application as it only allows authenticated admins to upload files.

CVSS3: 7.2
fstec
больше 3 лет назад

Уязвимость компонента /ossn/administrator/com_installer программного обеспечения для социальных сетей Open Source Social Network, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 84%
0.02221
Низкий

7.2 High

CVSS3

Дефекты

CWE-434