Описание
A PHP Local File Inclusion vulneraility in the default Redbasic theme for Hubzilla before version 7.2 allows remote attackers to include arbitrary php files via the schema parameter.
Ссылки
- PatchRelease NotesThird Party Advisory
- ProductRelease NotesVendor Advisory
- PatchRelease NotesThird Party Advisory
- ProductRelease NotesVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.2 (исключая)
cpe:2.3:a:hubzilla:hubzilla:*:*:*:*:*:*:*:*
EPSS
Процентиль: 55%
0.00329
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.5
github
почти 4 года назад
A PHP Local File Inclusion vulneraility in the default Redbasic theme for Hubzilla before version 7.2 allows remote attackers to include arbitrary php files via the schema parameter.
EPSS
Процентиль: 55%
0.00329
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
NVD-CWE-noinfo