Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xj93-8hff-x47c

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

MidiCart PHP, PHP Plus, and PHP Maxi allows remote attackers to (1) upload arbitrary php files via a direct request to admin/upload.php or (2) access sensitive information via a direct request to admin/credit_card_info.php.

MidiCart PHP, PHP Plus, and PHP Maxi allows remote attackers to (1) upload arbitrary php files via a direct request to admin/upload.php or (2) access sensitive information via a direct request to admin/credit_card_info.php.

EPSS

Процентиль: 90%
0.06104
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-425

Связанные уязвимости

CVSS3: 9.1
nvd
больше 22 лет назад

MidiCart PHP, PHP Plus, and PHP Maxi allows remote attackers to (1) upload arbitrary php files via a direct request to admin/upload.php or (2) access sensitive information via a direct request to admin/credit_card_info.php.

EPSS

Процентиль: 90%
0.06104
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-425