Описание
Simple Chatting System 1.0 allows Arbitrary File Upload via view/my_profile.php, which places files under uploads/.
Ссылки
- https://packetstormsecurity.com/files/145247/Simple-Chatting-System-1.0.0-Arbitrary-File-Upload.htmlExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- https://packetstormsecurity.com/files/145247/Simple-Chatting-System-1.0.0-Arbitrary-File-Upload.htmlExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:simple_chatting_system_project:simple_chatting_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 95%
0.16206
Средний
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-434
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
Simple Chatting System 1.0 allows Arbitrary File Upload via view/my_profile.php, which places files under uploads/.
EPSS
Процентиль: 95%
0.16206
Средний
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-434