Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh3f-gcw3-fwjc

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

EPSS

Процентиль: 84%
0.02579
Низкий

Связанные уязвимости

ubuntu
почти 19 лет назад

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

nvd
почти 19 лет назад

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

debian
почти 19 лет назад

Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWi ...

EPSS

Процентиль: 84%
0.02579
Низкий