Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m7jm-8gh3-3rp4

Опубликовано: 29 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.9

Описание

An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing a PHP webshell to a publicly accessible directory and execute arbitrary code on the server.

An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing a PHP webshell to a publicly accessible directory and execute arbitrary code on the server.

EPSS

Процентиль: 25%
0.00328
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.9
nvd
14 дней назад

An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing a PHP webshell to a publicly accessible directory and execute arbitrary code on the server.

EPSS

Процентиль: 25%
0.00328
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-434