Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pp52-5xhx-7rw2

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

addresses.php3 in MyPhPim 01.05 does not restrict uploaded files, which allows remote attackers to execute arbitrary PHP code via the pdbfile variable, then directly accessing those files from the uploads directory.

addresses.php3 in MyPhPim 01.05 does not restrict uploaded files, which allows remote attackers to execute arbitrary PHP code via the pdbfile variable, then directly accessing those files from the uploads directory.

EPSS

Процентиль: 80%
0.01414
Низкий

Связанные уязвимости

nvd
около 20 лет назад

addresses.php3 in MyPhPim 01.05 does not restrict uploaded files, which allows remote attackers to execute arbitrary PHP code via the pdbfile variable, then directly accessing those files from the uploads directory.

EPSS

Процентиль: 80%
0.01414
Низкий