Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrxc-cv69-f3fp

Опубликовано: 25 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.

Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.

EPSS

Процентиль: 55%
0.00328
Низкий

8.8 High

CVSS3

Дефекты

CWE-22
CWE-434

Связанные уязвимости

CVSS3: 8.8
nvd
больше 2 лет назад

Arbitrary file upload to web root in the IDAttend’s IDWeb application 3.1.013 allows authenticated attackers to upload dangerous files to web root such as ASP or ASPX, gaining command execution on the affected server.

EPSS

Процентиль: 55%
0.00328
Низкий

8.8 High

CVSS3

Дефекты

CWE-22
CWE-434