Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j9gh-cgr3-pwqf

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3 allows remote attackers to execute arbitrary PHP code via a URL in unspecified vectors that modify the _smarty_compile_path variable in the fetch function.

PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3 allows remote attackers to execute arbitrary PHP code via a URL in unspecified vectors that modify the _smarty_compile_path variable in the fetch function.

EPSS

Процентиль: 70%
0.00629
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 16 лет назад

PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3 allows remote attackers to execute arbitrary PHP code via a URL in unspecified vectors that modify the _smarty_compile_path variable in the fetch function.

EPSS

Процентиль: 70%
0.00629
Низкий

Дефекты

CWE-94