Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hhgp-h65v-gf93

Опубликовано: 31 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server.

Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server.

EPSS

Процентиль: 38%
0.00162
Низкий

7.5 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 7.5
nvd
10 месяцев назад

Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server.

EPSS

Процентиль: 38%
0.00162
Низкий

7.5 High

CVSS3

Дефекты

CWE-502