Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jx5h-g783-88p7

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.

form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.

EPSS

Процентиль: 91%
0.06521
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
около 18 лет назад

form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.

EPSS

Процентиль: 91%
0.06521
Низкий

Дефекты

CWE-94