Описание
Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and execute arbitrary files via ".." sequences in the uname parameter.
Уязвимые конфигурации
Конфигурация 1Версия до 3.6 (включая)
cpe:2.3:a:tinyphpforum:tinyphpforum:*:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.02287
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and execute arbitrary files via ".." sequences in the uname parameter.
EPSS
Процентиль: 82%
0.02287
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other