Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xc2p-7wgh-ffh3

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

PHP remote file inclusion vulnerability in (1) functions.php, (2) authentication_index.php, and (3) config_gedcom.php for PHPGEDVIEW 2.61 allows remote attackers to execute arbitrary PHP code by modifying the PGV_BASE_DIRECTORY parameter to reference a URL on a remote web server that contains the code.

PHP remote file inclusion vulnerability in (1) functions.php, (2) authentication_index.php, and (3) config_gedcom.php for PHPGEDVIEW 2.61 allows remote attackers to execute arbitrary PHP code by modifying the PGV_BASE_DIRECTORY parameter to reference a URL on a remote web server that contains the code.

EPSS

Процентиль: 91%
0.07132
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-829

Связанные уязвимости

CVSS3: 9.8
nvd
больше 21 года назад

PHP remote file inclusion vulnerability in (1) functions.php, (2) authentication_index.php, and (3) config_gedcom.php for PHPGEDVIEW 2.61 allows remote attackers to execute arbitrary PHP code by modifying the PGV_BASE_DIRECTORY parameter to reference a URL on a remote web server that contains the code.

EPSS

Процентиль: 91%
0.07132
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-829