Описание
I-Man 0.9, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code by uploading a file attachment with a .php extension.
Ссылки
- Broken LinkPatchVendor Advisory
- Broken LinkPatch
- Third Party AdvisoryVDB Entry
- Broken LinkPatchVendor Advisory
- Broken LinkPatch
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 0.9 (включая)
cpe:2.3:a:yvesglodt:i-man:*:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01402
Низкий
7.5 High
CVSS2
Дефекты
CWE-434
Связанные уязвимости
github
почти 4 года назад
I-Man 0.9, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code by uploading a file attachment with a .php extension.
EPSS
Процентиль: 80%
0.01402
Низкий
7.5 High
CVSS2
Дефекты
CWE-434