Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rm79-56cw-8vgj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass file type checks and upload arbitrary files via a null byte in the file name, as discovered by the Codescan product.

avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass file type checks and upload arbitrary files via a null byte in the file name, as discovered by the Codescan product.

EPSS

Процентиль: 81%
0.01471
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass file type checks and upload arbitrary files via a null byte in the file name, as discovered by the Codescan product.

EPSS

Процентиль: 81%
0.01471
Низкий