Описание
Remote Code Execution can occur in Simple Water Refilling Station Management System 1.0 via the System Logo option on the system_info page in classes/SystemSettings.php with an update_settings action.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ProductThird Party Advisory
- Third Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ProductThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:simple_water_refilling_station_management_system_project:simple_water_refilling_station_management_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.12063
Средний
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-434
Связанные уязвимости
github
больше 3 лет назад
Remote Code Execution can occur in Simple Water Refilling Station Management System 1.0 via the System Logo option on the system_info page in classes/SystemSettings.php with an update_settings action.
EPSS
Процентиль: 94%
0.12063
Средний
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-434