Описание
PHP file include vulnerability in download.php in PHPSimplicity Simplicity oF Upload before 1.3.1 allows remote attackers to include arbitrary local and remote files via the language parameter and a terminating null ("%00") characters.
Ссылки
- Exploit
- Exploit
- Patch
- Patch
- Exploit
- Exploit
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:phpsimplicity:simplicity_of_upload:1.3:*:*:*:*:*:*:*
EPSS
Процентиль: 69%
0.0059
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
PHP file include vulnerability in download.php in PHPSimplicity Simplicity oF Upload before 1.3.1 allows remote attackers to include arbitrary local and remote files via the language parameter and a terminating null ("%00") characters.
EPSS
Процентиль: 69%
0.0059
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other