Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j5gv-q5p3-x979

Опубликовано: 11 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells, which could lead to arbitrary code execution on the server.

Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells, which could lead to arbitrary code execution on the server.

EPSS

Процентиль: 81%
0.01524
Низкий

8.8 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 8.8
nvd
около 1 года назад

Webopac from Grand Vice info does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload and execute webshells, which could lead to arbitrary code execution on the server.

EPSS

Процентиль: 81%
0.01524
Низкий

8.8 High

CVSS3

Дефекты

CWE-434