Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mgwr-4fqc-qh76

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to upload arbitrary PHP files to the web root and execute system commands.

A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to upload arbitrary PHP files to the web root and execute system commands.

EPSS

Процентиль: 86%
0.03066
Низкий

Связанные уязвимости

CVSS3: 9.9
nvd
около 6 лет назад

A file upload issue exists in the specid parameter in Thomson Reuters FATCH before 5.2, which allows malicious users to upload arbitrary PHP files to the web root and execute system commands.

EPSS

Процентиль: 86%
0.03066
Низкий