Описание
PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP code when opening settings.php, possibly via send_reminders.php or other scripts.
Ссылки
- Patch
- Patch
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:webcalendar:webcalendar:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:webcalendar:webcalendar:1.0.0:rc1:*:*:*:*:*:*
cpe:2.3:a:webcalendar:webcalendar:1.0.0:rc2:*:*:*:*:*:*
cpe:2.3:a:webcalendar:webcalendar:1.0.0:rc3:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.02021
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
ubuntu
почти 21 год назад
PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP code when opening settings.php, possibly via send_reminders.php or other scripts.
debian
почти 21 год назад
PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 al ...
github
больше 4 лет назад
PHP remote file inclusion vulnerability in WebCalendar before 1.0.1 allows remote attackers to execute arbitrary PHP code when opening settings.php, possibly via send_reminders.php or other scripts.
EPSS
Процентиль: 79%
0.02021
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other