Описание
Unrestricted file upload vulnerability in includes/upload_file.php in DmCMS allows remote attackers to upload arbitrary PHP scripts by placing a script's contents in both the File2 and File3 parameters, and sending a ok.php?do=act Referer.
Ссылки
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:dmcms:dmcms:*:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00877
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Unrestricted file upload vulnerability in includes/upload_file.php in DmCMS allows remote attackers to upload arbitrary PHP scripts by placing a script's contents in both the File2 and File3 parameters, and sending a ok.php?do=act Referer.
EPSS
Процентиль: 75%
0.00877
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other