Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3c2-83qf-r2j9

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, when the upload feature is enabled, does not verify the Type parameter, which allows remote attackers to upload arbitrary file types. NOTE: It is not clear whether this is related to CVE-2006-0658.

editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, when the upload feature is enabled, does not verify the Type parameter, which allows remote attackers to upload arbitrary file types. NOTE: It is not clear whether this is related to CVE-2006-0658.

EPSS

Процентиль: 70%
0.0073
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, when the upload feature is enabled, does not verify the Type parameter, which allows remote attackers to upload arbitrary file types. NOTE: It is not clear whether this is related to CVE-2006-0658.

debian
больше 19 лет назад

editor/filemanager/upload/php/upload.php in FCKeditor before 2.3 Beta, ...

EPSS

Процентиль: 70%
0.0073
Низкий