Описание
Directory traversal vulnerability in index.php for Wikepage 2006.2a Opus 10 allows remote attackers to include arbitrary local files via the lng parameter, as demonstrated by inserting PHP code into a log file.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:wikepage:wikepage:2006.2:*:*:*:*:*:*:*
cpe:2.3:a:wikepage:wikepage:2006.2a:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.12406
Средний
4 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Directory traversal vulnerability in index.php for Wikepage 2006.2a Opus 10 allows remote attackers to include arbitrary local files via the lng parameter, as demonstrated by inserting PHP code into a log file.
EPSS
Процентиль: 94%
0.12406
Средний
4 Medium
CVSS2
Дефекты
NVD-CWE-Other