Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hgwc-f2wf-xrf8

Опубликовано: 30 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

A remote code execution (RCE) vulnerability in the component /admin/store.php of Emlog Pro before v2.3.15 allows attackers to use remote file downloads and self-extract fucntions to upload webshells to the target server, thereby obtaining system privileges.

A remote code execution (RCE) vulnerability in the component /admin/store.php of Emlog Pro before v2.3.15 allows attackers to use remote file downloads and self-extract fucntions to upload webshells to the target server, thereby obtaining system privileges.

EPSS

Процентиль: 63%
0.00438
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 6.3
nvd
больше 1 года назад

A remote code execution (RCE) vulnerability in the component /admin/store.php of Emlog Pro before v2.3.15 allows attackers to use remote file downloads and self-extract fucntions to upload webshells to the target server, thereby obtaining system privileges.

EPSS

Процентиль: 63%
0.00438
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-266