Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vp95-xmm9-qvcw

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

EPSS

Процентиль: 68%
0.00582
Низкий

Связанные уязвимости

ubuntu
почти 19 лет назад

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

nvd
почти 19 лет назад

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is false, allows remote attackers to execute arbitrary commands via shell metacharacters (backticks) in the torrent parameter to (1) details.php and (2) startpop.php.

debian
почти 19 лет назад

metaInfo.php in TorrentFlux 2.2, when $cfg["enable_file_priority"] is ...

EPSS

Процентиль: 68%
0.00582
Низкий