Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xv2v-3fj4-g6xm

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

send_message.php in AeroMail before 1.45 allows remote attackers to read arbitrary files on the server, instead of just uploaded files, via an attachment that modifies the filename to be uploaded.

send_message.php in AeroMail before 1.45 allows remote attackers to read arbitrary files on the server, instead of just uploaded files, via an attachment that modifies the filename to be uploaded.

EPSS

Процентиль: 82%
0.01755
Низкий

Связанные уязвимости

nvd
больше 23 лет назад

send_message.php in AeroMail before 1.45 allows remote attackers to read arbitrary files on the server, instead of just uploaded files, via an attachment that modifies the filename to be uploaded.

EPSS

Процентиль: 82%
0.01755
Низкий