Описание
Garage Management System v1.0 is vulnerable to Arbitrary code execution via ip/garage/php_action/editProductImage.php?id=1.
Ссылки
- https://github.com/MagicWHat/bug_report/blob/main/vendors/mayuri_k/garage-management-system/RCE-1.mdExploitThird Party Advisory
- https://github.com/MagicWHat/bug_report/blob/main/vendors/mayuri_k/garage-management-system/RCE-1.mdExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:garage_management_system_project:garage_management_system:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.0094
Низкий
7.2 High
CVSS3
Дефекты
CWE-434
CWE-434
Связанные уязвимости
CVSS3: 7.2
github
больше 3 лет назад
Garage Management System v1.0 is vulnerable to Arbitrary code execution via ip/garage/php_action/editProductImage.php?id=1.
EPSS
Процентиль: 76%
0.0094
Низкий
7.2 High
CVSS3
Дефекты
CWE-434
CWE-434