Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m3m4-m2f6-fhpx

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Static code injection vulnerability in install.php in mcRefer allows remote attackers to execute arbitrary PHP code via the bgcolor parameter, which is inserted into mcrconf.inc.php.

Static code injection vulnerability in install.php in mcRefer allows remote attackers to execute arbitrary PHP code via the bgcolor parameter, which is inserted into mcrconf.inc.php.

EPSS

Процентиль: 78%
0.01185
Низкий

Связанные уязвимости

nvd
почти 19 лет назад

Static code injection vulnerability in install.php in mcRefer allows remote attackers to execute arbitrary PHP code via the bgcolor parameter, which is inserted into mcrconf.inc.php.

EPSS

Процентиль: 78%
0.01185
Низкий