Описание
Unrestricted file upload vulnerability in the Restaurante (com_restaurante) component for Joomla! allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .php.jpg, which creates an accessible file under img_original/.
Ссылки
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:detodas:restaurante_component_for_joomla:*:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.07268
Низкий
7.5 High
CVSS2
Дефекты
CWE-94
Связанные уязвимости
github
больше 4 лет назад
Unrestricted file upload vulnerability in the Restaurante (com_restaurante) component for Joomla! allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .php.jpg, which creates an accessible file under img_original/.
EPSS
Процентиль: 94%
0.07268
Низкий
7.5 High
CVSS2
Дефекты
CWE-94