Описание
pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
Ссылки
- ExploitPatchThird Party AdvisoryUS Government Resource
- Vendor Advisory
- ExploitPatchThird Party AdvisoryUS Government Resource
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:derek_leung:pslash:0.70:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.01648
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable.
EPSS
Процентиль: 82%
0.01648
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other