Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mp85-3986-vf9p

Опубликовано: 03 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

WebPros Plesk before 18.0.73.5 and 18.0.74 before 18.0.74.2 on Linux allows remote authenticated users to execute arbitrary code as root via domain creation. The attacker needs "Create and manage sites" with "Domains management" and "Subdomains management."

WebPros Plesk before 18.0.73.5 and 18.0.74 before 18.0.74.2 on Linux allows remote authenticated users to execute arbitrary code as root via domain creation. The attacker needs "Create and manage sites" with "Domains management" and "Subdomains management."

EPSS

Процентиль: 19%
0.00062
Низкий

7.8 High

CVSS3

Дефекты

CWE-61

Связанные уязвимости

CVSS3: 7.8
nvd
2 месяца назад

WebPros Plesk before 18.0.73.5 and 18.0.74 before 18.0.74.2 on Linux allows remote authenticated users to execute arbitrary code as root via domain creation. The attacker needs "Create and manage sites" with "Domains management" and "Subdomains management."

EPSS

Процентиль: 19%
0.00062
Низкий

7.8 High

CVSS3

Дефекты

CWE-61