Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p4fq-jh4w-p6hr

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.

Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.

EPSS

Процентиль: 98%
0.51633
Средний

Дефекты

CWE-22

Связанные уязвимости

ubuntu
почти 13 лет назад

Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.

nvd
почти 13 лет назад

Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.

debian
почти 13 лет назад

Directory traversal vulnerability in install.php in Piwigo before 2.4. ...

EPSS

Процентиль: 98%
0.51633
Средний

Дефекты

CWE-22