Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9h45-9994-52qm

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Unrestricted file upload vulnerability in ilias.php in ILIAS 4.4.1 allows remote authenticated users to execute arbitrary PHP code by using a .php filename in an upload_files action to the uploadFiles command, and then accessing the .php file via a direct request to a certain client_id pathname.

Unrestricted file upload vulnerability in ilias.php in ILIAS 4.4.1 allows remote authenticated users to execute arbitrary PHP code by using a .php filename in an upload_files action to the uploadFiles command, and then accessing the .php file via a direct request to a certain client_id pathname.

EPSS

Процентиль: 84%
0.02219
Низкий

Связанные уязвимости

nvd
почти 12 лет назад

Unrestricted file upload vulnerability in ilias.php in ILIAS 4.4.1 allows remote authenticated users to execute arbitrary PHP code by using a .php filename in an upload_files action to the uploadFiles command, and then accessing the .php file via a direct request to a certain client_id pathname.

debian
почти 12 лет назад

Unrestricted file upload vulnerability in ilias.php in ILIAS 4.4.1 all ...

EPSS

Процентиль: 84%
0.02219
Низкий