Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2015-7309

Опубликовано: 01 окт. 2025
Источник: msrc
EPSS Средний

Описание

The theme editor in Bolt allows remote authenticated users to execute arbitrary code by renaming a crafted file

EPSS

Процентиль: 98%
0.60269
Средний

Связанные уязвимости

nvd
около 10 лет назад

The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitrary code by renaming a crafted file and then directly accessing it.

github
больше 3 лет назад

The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitrary code by renaming a crafted file and then directly accessing it.

EPSS

Процентиль: 98%
0.60269
Средний