Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cc2w-qv4r-r525

Опубликовано: 22 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was found in Zfaka <= 1.4.5. The verification of the background file upload function check is not strict, resulting in remote command execution.

An issue was found in Zfaka <= 1.4.5. The verification of the background file upload function check is not strict, resulting in remote command execution.

EPSS

Процентиль: 82%
0.01721
Низкий

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
почти 4 года назад

An issue was found in Zfaka <= 1.4.5. The verification of the background file upload function check is not strict, resulting in remote command execution.

EPSS

Процентиль: 82%
0.01721
Низкий

Дефекты

CWE-434