Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pwhw-p972-gp85

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authenticated users to conduct PHP object injection attacks and cause a denial of service via unspecified vectors.

plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authenticated users to conduct PHP object injection attacks and cause a denial of service via unspecified vectors.

EPSS

Процентиль: 39%
0.00175
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 13 лет назад

plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authenticated users to conduct PHP object injection attacks and cause a denial of service via unspecified vectors.

EPSS

Процентиль: 39%
0.00175
Низкий

Дефекты

CWE-20