Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jwvx-wpcq-87hw

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple unrestricted file upload vulnerabilities in upload.php in PHPhotoalbum allow remote attackers to execute arbitrary code by uploading a file with a (1) .php.pgif or (2) .php.pjpeg double extension, then accessing it via a direct request to the file in albums/userpics/.

Multiple unrestricted file upload vulnerabilities in upload.php in PHPhotoalbum allow remote attackers to execute arbitrary code by uploading a file with a (1) .php.pgif or (2) .php.pjpeg double extension, then accessing it via a direct request to the file in albums/userpics/.

EPSS

Процентиль: 85%
0.02558
Низкий

Связанные уязвимости

nvd
почти 16 лет назад

Multiple unrestricted file upload vulnerabilities in upload.php in PHPhotoalbum allow remote attackers to execute arbitrary code by uploading a file with a (1) .php.pgif or (2) .php.pjpeg double extension, then accessing it via a direct request to the file in albums/userpics/.

EPSS

Процентиль: 85%
0.02558
Низкий