Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mx8m-h62w-82vp

Опубликовано: 12 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

The web management interface of Okcat Parking Management Platform from ZONG YU has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

The web management interface of Okcat Parking Management Platform from ZONG YU has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

EPSS

Процентиль: 80%
0.0134
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
9 месяцев назад

The web management interface of Okcat Parking Management Platform from ZONG YU has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

EPSS

Процентиль: 80%
0.0134
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-434