Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q89m-fvww-2r72

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

MyCMS 0.9.8 and earlier allows remote attackers to gain privileges via the admin cookie parameter, as demonstrated by a post to admin/settings.php that injects PHP code into settings.inc, which can then be executed via a direct request to index.php.

MyCMS 0.9.8 and earlier allows remote attackers to gain privileges via the admin cookie parameter, as demonstrated by a post to admin/settings.php that injects PHP code into settings.inc, which can then be executed via a direct request to index.php.

EPSS

Процентиль: 92%
0.08859
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

MyCMS 0.9.8 and earlier allows remote attackers to gain privileges via the admin cookie parameter, as demonstrated by a post to admin/settings.php that injects PHP code into settings.inc, which can then be executed via a direct request to index.php.

EPSS

Процентиль: 92%
0.08859
Низкий