Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-98m6-692f-9693

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Online Ordering System 1.0 is vulnerable to arbitrary file upload through /onlineordering/GPST/store/initiateorder.php, which may lead to remote code execution (RCE).

Online Ordering System 1.0 is vulnerable to arbitrary file upload through /onlineordering/GPST/store/initiateorder.php, which may lead to remote code execution (RCE).

EPSS

Процентиль: 85%
0.02606
Низкий

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
почти 5 лет назад

Online Ordering System 1.0 is vulnerable to arbitrary file upload through /onlineordering/GPST/store/initiateorder.php, which may lead to remote code execution (RCE).

EPSS

Процентиль: 85%
0.02606
Низкий

Дефекты

CWE-434