Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh3f-gcw3-fwjc

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

EPSS

Процентиль: 83%
0.02088
Низкий

Связанные уязвимости

ubuntu
почти 18 лет назад

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

nvd
почти 18 лет назад

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

debian
почти 18 лет назад

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWi ...

EPSS

Процентиль: 83%
0.02088
Низкий