Описание
Online Store System v1.0 delete_file.php doesn't check to see if a user has administrative rights nor does it check for path traversal.
Ссылки
- ExploitMailing ListThird Party Advisory
- Permissions RequiredThird Party Advisory
- Product
- ExploitMailing ListThird Party Advisory
- Permissions RequiredThird Party Advisory
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:online_store_system_project:online_store_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 52%
0.00293
Низкий
7.5 High
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
Online Store System v1.0 delete_file.php doesn't check to see if a user has administrative rights nor does it check for path traversal.
EPSS
Процентиль: 52%
0.00293
Низкий
7.5 High
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-22