Описание
LightCMS v1.3.7 was discovered to contain a remote code execution (RCE) vulnerability via the image:make function.
Ссылки
- ExploitIssue TrackingPatch
- ExploitThird Party Advisory
- ExploitIssue TrackingPatch
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:lightcms_project:lightcms:1.3.7:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.01771
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-306
Связанные уязвимости
CVSS3: 9.8
github
почти 3 года назад
LightCMS v1.3.7 was discovered to contain a remote code execution (RCE) vulnerability via the image:make function.
EPSS
Процентиль: 82%
0.01771
Низкий
9.8 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-306