Описание
PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:zpanel:zpanel:2.0:*:*:*:*:*:*:*
cpe:2.3:a:zpanel:zpanel:2.5_beta:*:*:*:*:*:*:*
cpe:2.3:a:zpanel:zpanel:2.5_beta9:*:*:*:*:*:*:*
cpe:2.3:a:zpanel:zpanel:2.5_beta10:*:*:*:*:*:*:*
EPSS
Процентиль: 72%
0.00717
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
PHP remote file inclusion vulnerability in zpanel.php in ZPanel allows remote attackers to (1) execute arbitrary PHP code in ZPanel 2.0 or (2) include local files in ZPanel 2.5 beta 10 and earlier by modifying the page parameter.
EPSS
Процентиль: 72%
0.00717
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other