Описание
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MaxCoach allows PHP Local File Inclusion. This issue affects MaxCoach: from n/a through 3.2.5.
Уязвимые конфигурации
Конфигурация 1Версия до 3.2.5 (включая)
cpe:2.3:a:thememove:maxcoach:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 29%
0.00104
Низкий
8.1 High
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-98
Связанные уязвимости
CVSS3: 8.1
github
5 месяцев назад
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove MaxCoach allows PHP Local File Inclusion. This issue affects MaxCoach: from n/a through 3.2.5.
EPSS
Процентиль: 29%
0.00104
Низкий
8.1 High
CVSS3
9.8 Critical
CVSS3
Дефекты
CWE-98