Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-95v3-2xxf-g2hg

Опубликовано: 30 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

An Unrestricted File Upload vulnerability exists in Sage 1000 v7.0.0, which allows authorized users to upload files without proper validation. An attacker could exploit this vulnerability by uploading malicious files, such as HTML, scripts, or other executable content, that may be executed on the server, leading to further system compromise.

An Unrestricted File Upload vulnerability exists in Sage 1000 v7.0.0, which allows authorized users to upload files without proper validation. An attacker could exploit this vulnerability by uploading malicious files, such as HTML, scripts, or other executable content, that may be executed on the server, leading to further system compromise.

EPSS

Процентиль: 28%
0.00101
Низкий

8.1 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 8.1
nvd
больше 1 года назад

An Unrestricted File Upload vulnerability exists in Sage 1000 v7.0.0, which allows authorized users to upload files without proper validation. An attacker could exploit this vulnerability by uploading malicious files, such as HTML, scripts, or other executable content, that may be executed on the server, leading to further system compromise.

EPSS

Процентиль: 28%
0.00101
Низкий

8.1 High

CVSS3

Дефекты

CWE-434