Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x5xf-58qf-fq5q

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Absolute path traversal vulnerability in fckeditor/editor/filemanager/browser/default/connectors/php/connector.php in UNAK-CMS 1.5.5 allows remote attackers to include and execute arbitrary local files via a full pathname in the Dirroot parameter, a different vulnerability than CVE-2006-4890.1.

Absolute path traversal vulnerability in fckeditor/editor/filemanager/browser/default/connectors/php/connector.php in UNAK-CMS 1.5.5 allows remote attackers to include and execute arbitrary local files via a full pathname in the Dirroot parameter, a different vulnerability than CVE-2006-4890.1.

EPSS

Процентиль: 84%
0.02081
Низкий

Дефекты

CWE-22

Связанные уязвимости

ubuntu
больше 17 лет назад

Absolute path traversal vulnerability in fckeditor/editor/filemanager/browser/default/connectors/php/connector.php in UNAK-CMS 1.5.5 allows remote attackers to include and execute arbitrary local files via a full pathname in the Dirroot parameter, a different vulnerability than CVE-2006-4890.1.

nvd
больше 17 лет назад

Absolute path traversal vulnerability in fckeditor/editor/filemanager/browser/default/connectors/php/connector.php in UNAK-CMS 1.5.5 allows remote attackers to include and execute arbitrary local files via a full pathname in the Dirroot parameter, a different vulnerability than CVE-2006-4890.1.

debian
больше 17 лет назад

Absolute path traversal vulnerability in fckeditor/editor/filemanager/ ...

EPSS

Процентиль: 84%
0.02081
Низкий

Дефекты

CWE-22