Описание
dompdf.php in dompdf before 0.6.1, when DOMPDF_ENABLE_PHP is enabled, allows context-dependent attackers to bypass chroot protections and read arbitrary files via a PHP protocol and wrappers in the input_file parameter, as demonstrated by a php://filter/read=convert.base64-encode/resource in the input_file parameter.
Ссылки
- Mailing ListThird Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- PatchThird Party Advisory
- Broken Link
- Mailing ListThird Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- PatchThird Party Advisory
- Broken Link
Уязвимые конфигурации
Конфигурация 1Версия до 0.6.0 (включая)
cpe:2.3:a:dompdf:dompdf:*:beta3:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.5489
Средний
6.8 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
ubuntu
почти 12 лет назад
dompdf.php in dompdf before 0.6.1, when DOMPDF_ENABLE_PHP is enabled, allows context-dependent attackers to bypass chroot protections and read arbitrary files via a PHP protocol and wrappers in the input_file parameter, as demonstrated by a php://filter/read=convert.base64-encode/resource in the input_file parameter.
debian
почти 12 лет назад
dompdf.php in dompdf before 0.6.1, when DOMPDF_ENABLE_PHP is enabled, ...
EPSS
Процентиль: 98%
0.5489
Средний
6.8 Medium
CVSS2
Дефекты
CWE-200