Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-94v8-q3q5-ph58

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Attachment Mod 2.3.10 module for phpBB, when used with Apache mod_mime, does not properly handle files with multiple file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.

Attachment Mod 2.3.10 module for phpBB, when used with Apache mod_mime, does not properly handle files with multiple file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.

EPSS

Процентиль: 85%
0.02468
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

Attachment Mod 2.3.10 module for phpBB, when used with Apache mod_mime, does not properly handle files with multiple file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.

EPSS

Процентиль: 85%
0.02468
Низкий