Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r76h-m46c-jfwg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.

MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.

EPSS

Процентиль: 69%
0.00616
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
больше 16 лет назад

MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.

EPSS

Процентиль: 69%
0.00616
Низкий

Дефекты

CWE-287