Описание
pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
Ссылки
- ExploitPatchThird Party AdvisoryUS Government Resource
- Vendor Advisory
- ExploitPatchThird Party AdvisoryUS Government Resource
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:derek_leung:pslash:0.70:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.02972
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
EPSS
Процентиль: 86%
0.02972
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other