Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-50497

Опубликовано: 28 окт. 2024
Источник: nvd
CVSS3: 8.1
CVSS3: 9.8
EPSS Низкий

Описание

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BuyNowDepot Advanced Online Ordering and Delivery Platform allows PHP Local File Inclusion.This issue affects Advanced Online Ordering and Delivery Platform: from n/a through 2.0.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:buynowdepot:advanced_online_ordering_and_delivery_platform:*:*:*:*:*:wordpress:*:*
Версия до 2.0.0 (включая)

EPSS

Процентиль: 81%
0.01525
Низкий

8.1 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-98
CWE-829

Связанные уязвимости

CVSS3: 8.1
github
больше 1 года назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in BuyNowDepot Advanced Online Ordering and Delivery Platform allows PHP Local File Inclusion.This issue affects Advanced Online Ordering and Delivery Platform: from n/a through 2.0.0.

EPSS

Процентиль: 81%
0.01525
Низкий

8.1 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-98
CWE-829