Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9vcv-pqch-f3fm

Опубликовано: 16 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

code-projects Computer Laboratory System 1.0 has a file upload vulnerability. Staff can upload malicious files by uploading PHP backdoor files when modifying personal avatar information and use web shell connection tools to obtain server permissions.

code-projects Computer Laboratory System 1.0 has a file upload vulnerability. Staff can upload malicious files by uploading PHP backdoor files when modifying personal avatar information and use web shell connection tools to obtain server permissions.

EPSS

Процентиль: 14%
0.00046
Низкий

7.3 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 7.3
nvd
5 месяцев назад

code-projects Computer Laboratory System 1.0 has a file upload vulnerability. Staff can upload malicious files by uploading PHP backdoor files when modifying personal avatar information and use web shell connection tools to obtain server permissions.

EPSS

Процентиль: 14%
0.00046
Низкий

7.3 High

CVSS3

Дефекты

CWE-434