Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p4wg-48wq-x28w

Опубликовано: 25 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 9.8

Описание

An unrestricted upload of file with dangerous type vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attackers to write malicious code in a specific file, which may lead to arbitrary code execution.

An unrestricted upload of file with dangerous type vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attackers to write malicious code in a specific file, which may lead to arbitrary code execution.

EPSS

Процентиль: 63%
0.00445
Низкий

6.9 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
5 месяцев назад

An unrestricted upload of file with dangerous type vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attackers to write malicious code in a specific file, which may lead to arbitrary code execution.

EPSS

Процентиль: 63%
0.00445
Низкий

6.9 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-434