Описание
PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM Broadcaster, allows remote attackers to execute arbitrary PHP code via a URL in the commonpath parameter.
Ссылки
- Vendor Advisory
- Exploit
- Vendor Advisory
- Exploit
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:spacial_audio_solutions:sam_broadcaster:*:*:*:*:*:*:*:*
cpe:2.3:a:spacial_audio_solutions:samphpweb:*:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.02822
Низкий
7.5 High
CVSS2
Дефекты
CWE-94
Связанные уязвимости
github
почти 4 года назад
PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM Broadcaster, allows remote attackers to execute arbitrary PHP code via a URL in the commonpath parameter.
EPSS
Процентиль: 86%
0.02822
Низкий
7.5 High
CVSS2
Дефекты
CWE-94