Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2002-1841

Опубликовано: 31 дек. 2002
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The document management module in NOLA 1.1.1 and 1.1.2 does not restrict the types of files that are uploaded, which allows remote attackers to upload and execute arbitrary PHP files with extensions such as .php4.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:noguska:nola:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:noguska:nola:1.1.2:*:*:*:*:*:*:*

EPSS

Процентиль: 80%
0.02139
Низкий

5 Medium

CVSS2

Дефекты

CWE-434

Связанные уязвимости

github
больше 4 лет назад

The document management module in NOLA 1.1.1 and 1.1.2 does not restrict the types of files that are uploaded, which allows remote attackers to upload and execute arbitrary PHP files with extensions such as .php4.

EPSS

Процентиль: 80%
0.02139
Низкий

5 Medium

CVSS2

Дефекты

CWE-434