Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ph65-4f3r-7fv8

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Awstats version 7.6 and earlier is vulnerable to a path traversal flaw in the handling of the "config" and "migrate" parameters resulting in unauthenticated remote code execution.

Awstats version 7.6 and earlier is vulnerable to a path traversal flaw in the handling of the "config" and "migrate" parameters resulting in unauthenticated remote code execution.

EPSS

Процентиль: 90%
0.05922
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 8 лет назад

Awstats version 7.6 and earlier is vulnerable to a path traversal flaw in the handling of the "config" and "migrate" parameters resulting in unauthenticated remote code execution.

CVSS3: 9.8
nvd
около 8 лет назад

Awstats version 7.6 and earlier is vulnerable to a path traversal flaw in the handling of the "config" and "migrate" parameters resulting in unauthenticated remote code execution.

CVSS3: 9.8
debian
около 8 лет назад

Awstats version 7.6 and earlier is vulnerable to a path traversal flaw ...

EPSS

Процентиль: 90%
0.05922
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-22