Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hx74-56pv-vfr2

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.

admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.

EPSS

Процентиль: 92%
0.09152
Низкий

Связанные уязвимости

nvd
почти 20 лет назад

admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.

EPSS

Процентиль: 92%
0.09152
Низкий