Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hj7x-r6cx-rqqh

Опубликовано: 28 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administrative interface. The application does not adequately restrict uploaded file types, allowing malicious files to be uploaded and executed by the server. This condition enables remote code execution under default configurations.

Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administrative interface. The application does not adequately restrict uploaded file types, allowing malicious files to be uploaded and executed by the server. This condition enables remote code execution under default configurations.

EPSS

Процентиль: 56%
0.00344
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.1
nvd
11 дней назад

Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administrative interface. The application does not adequately restrict uploaded file types, allowing malicious files to be uploaded and executed by the server. This condition enables remote code execution under default configurations.

EPSS

Процентиль: 56%
0.00344
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-434