Описание
The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitrary code by renaming a crafted file and then directly accessing it.
Ссылки
- Exploit
- Exploit
- Exploit
- Exploit
- PatchVendor Advisory
- Exploit
- Exploit
- Exploit
- Exploit
- Exploit
- PatchVendor Advisory
- Exploit
Уязвимые конфигурации
Конфигурация 1Версия до 2.2.0 (включая)
cpe:2.3:a:boltcms:bolt:*:*:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.60269
Средний
6.5 Medium
CVSS2
Дефекты
CWE-74
Связанные уязвимости
msrc
3 месяца назад
The theme editor in Bolt allows remote authenticated users to execute arbitrary code by renaming a crafted file
github
больше 3 лет назад
The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitrary code by renaming a crafted file and then directly accessing it.
EPSS
Процентиль: 98%
0.60269
Средний
6.5 Medium
CVSS2
Дефекты
CWE-74