Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qrmv-mw6j-m6r3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the issues of unrestricted file uploads which can be bypassed by changing the content-type and name file too double extensions.

gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the issues of unrestricted file uploads which can be bypassed by changing the content-type and name file too double extensions.

EPSS

Процентиль: 38%
0.00168
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
больше 5 лет назад

gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the issues of unrestricted file uploads which can be bypassed by changing the content-type and name file too double extensions.

CVSS3: 7.5
fstec
больше 5 лет назад

Уязвимость расширения GMapFP системы управления содержимым Joomla!, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 38%
0.00168
Низкий