Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-4449

Опубликовано: 21 дек. 2005
Источник: nvd
CVSS2: 4
EPSS Низкий

Описание

verify.php in FlatNuke 2.5.6 allows remote authenticated administrators to modify arbitrary PHP files by setting the file parameter to an arbitrary file and injecting the code into the body parameter. NOTE: if a FlatNuke administrator is normally assumed to be able to modify arbitrary content, then this issue does not cross privilege boundaries and would not be a vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:flatnuke:flatnuke:2.5.6:*:*:*:*:*:*:*

EPSS

Процентиль: 87%
0.03294
Низкий

4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

verify.php in FlatNuke 2.5.6 allows remote authenticated administrators to modify arbitrary PHP files by setting the file parameter to an arbitrary file and injecting the code into the body parameter. NOTE: if a FlatNuke administrator is normally assumed to be able to modify arbitrary content, then this issue does not cross privilege boundaries and would not be a vulnerability.

EPSS

Процентиль: 87%
0.03294
Низкий

4 Medium

CVSS2

Дефекты

NVD-CWE-Other