Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9vjx-8hr9-q3m8

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

PHP remote file inclusion vulnerability in modules/calendar/minicalendar.php in ezContents CMS allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[gsLanguage] parameter, a different vector than CVE-2006-4477 and CVE-2004-0132.

PHP remote file inclusion vulnerability in modules/calendar/minicalendar.php in ezContents CMS allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[gsLanguage] parameter, a different vector than CVE-2006-4477 and CVE-2004-0132.

EPSS

Процентиль: 81%
0.01553
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 17 лет назад

PHP remote file inclusion vulnerability in modules/calendar/minicalendar.php in ezContents CMS allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[gsLanguage] parameter, a different vector than CVE-2006-4477 and CVE-2004-0132.

EPSS

Процентиль: 81%
0.01553
Низкий

Дефекты

CWE-94