Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f5qf-87r9-8v7q

Опубликовано: 17 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.9

Описание

Unrestricted upload of file with dangerous type vulnerability in create template function in EasyUse MailHunter Ultimate 2023 and earlier allows remote authenticated users to perform arbitrary system commands with ‘NT Authority\SYSTEM‘ privilege via a crafted ZIP archive.

Unrestricted upload of file with dangerous type vulnerability in create template function in EasyUse MailHunter Ultimate 2023 and earlier allows remote authenticated users to perform arbitrary system commands with ‘NT Authority\SYSTEM‘ privilege via a crafted ZIP archive.

EPSS

Процентиль: 52%
0.00293
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.9
nvd
больше 2 лет назад

Unrestricted upload of file with dangerous type vulnerability in create template function in EasyUse MailHunter Ultimate 2023 and earlier allows remote authenticated users to perform arbitrary system commands with ‘NT Authority\SYSTEM‘ privilege via a crafted ZIP archive.

EPSS

Процентиль: 52%
0.00293
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-434