Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9qqc-cwxq-gc75

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parameter, which is used by the multisort function when dynamically creating an anonymous PHP function.

awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parameter, which is used by the multisort function when dynamically creating an anonymous PHP function.

EPSS

Процентиль: 100%
0.91414
Критический

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 17 лет назад

awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parameter, which is used by the multisort function when dynamically creating an anonymous PHP function.

EPSS

Процентиль: 100%
0.91414
Критический

Дефекты

CWE-94