Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m79g-crvq-57hp

Опубликовано: 09 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2.1
CVSS3: 5.4

Описание

A vulnerability, which was classified as critical, has been found in linlinjava litemall up to 1.8.0. Affected by this issue is the function delete of the file /admin/storage/delete of the component File Handler. The manipulation of the argument key leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

A vulnerability, which was classified as critical, has been found in linlinjava litemall up to 1.8.0. Affected by this issue is the function delete of the file /admin/storage/delete of the component File Handler. The manipulation of the argument key leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 14%
0.00048
Низкий

2.1 Low

CVSS4

5.4 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.4
nvd
21 день назад

A vulnerability, which was classified as critical, has been found in linlinjava litemall up to 1.8.0. Affected by this issue is the function delete of the file /admin/storage/delete of the component File Handler. The manipulation of the argument key leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 14%
0.00048
Низкий

2.1 Low

CVSS4

5.4 Medium

CVSS3

Дефекты

CWE-22