Описание
Unrestricted File Upload vulnerability in Greek Universities Network Open eClass v.3.15 and earlier allows attackers to run arbitrary code via upload of crafted file to certbadge.php endpoint.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.15 (включая)
cpe:2.3:a:openeclass:openeclass:*:*:*:*:*:*:*:*
EPSS
Процентиль: 84%
0.02162
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-434
Связанные уязвимости
github
почти 2 года назад
Unrestricted File Upload vulnerability in Greek Universities Network Open eClass v.3.15 and earlier allows attackers to run arbitrary code via upload of crafted file to certbadge.php endpoint.
EPSS
Процентиль: 84%
0.02162
Низкий
9.1 Critical
CVSS3
Дефекты
CWE-434