Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h9m9-95j2-cpmj

Опубликовано: 20 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

PHP code injection in watolib auth.php and hosttags.php in Tribe29's Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.0p29 allows an attacker to inject and execute PHP code which will be executed upon request of the vulnerable component.

PHP code injection in watolib auth.php and hosttags.php in Tribe29's Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.0p29 allows an attacker to inject and execute PHP code which will be executed upon request of the vulnerable component.

EPSS

Процентиль: 74%
0.00796
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-94

Связанные уязвимости

CVSS3: 9.1
ubuntu
почти 3 года назад

PHP code injection in watolib auth.php and hosttags.php in Tribe29's Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.0p29 allows an attacker to inject and execute PHP code which will be executed upon request of the vulnerable component.

CVSS3: 9.1
nvd
почти 3 года назад

PHP code injection in watolib auth.php and hosttags.php in Tribe29's Checkmk <= 2.1.0p10, Checkmk <= 2.0.0p27, and Checkmk <= 1.6.0p29 allows an attacker to inject and execute PHP code which will be executed upon request of the vulnerable component.

CVSS3: 9.1
debian
почти 3 года назад

PHP code injection in watolib auth.php and hosttags.php in Tribe29's C ...

EPSS

Процентиль: 74%
0.00796
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-94