Описание
PHP remote file inclusion vulnerability in includes/template.php in MyEvent 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the myevent_path parameter. NOTE: a reliable third party disputes this issue, saying "the entire file is a class.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:mywebland:myevent:1.6:*:*:*:*:*:*:*
EPSS
Процентиль: 73%
0.00784
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
** DISPUTED ** PHP remote file inclusion vulnerability in includes/template.php in MyEvent 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the myevent_path parameter. NOTE: a reliable third party disputes this issue, saying "the entire file is a class."
EPSS
Процентиль: 73%
0.00784
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other