Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gggq-fc7q-9xp9

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in help/mini.php in X7 Chat 2.0.1 A1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the help_file parameter, a different vector than CVE-2006-2156.

Directory traversal vulnerability in help/mini.php in X7 Chat 2.0.1 A1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the help_file parameter, a different vector than CVE-2006-2156.

EPSS

Процентиль: 90%
0.05666
Низкий

Дефекты

CWE-22

Связанные уязвимости

nvd
больше 17 лет назад

Directory traversal vulnerability in help/mini.php in X7 Chat 2.0.1 A1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the help_file parameter, a different vector than CVE-2006-2156.

EPSS

Процентиль: 90%
0.05666
Низкий

Дефекты

CWE-22