Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q9gm-jjqx-pfrr

Опубликовано: 23 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.2

Описание

An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file.

An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file.

EPSS

Процентиль: 32%
0.00126
Низкий

8.2 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 8.2
nvd
больше 1 года назад

An arbitrary file upload vulnerability in the Ticket Generation function of Ladybird Web Solution Faveo-Helpdesk v2.0.3 allows attackers to execute arbitrary code via uploading a crafted .html or .svg file.

EPSS

Процентиль: 32%
0.00126
Низкий

8.2 High

CVSS3

Дефекты

CWE-434