Описание
Police Statistics Database System developed by Gotac has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attacker to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
Ссылки
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.0.2 (включая)
cpe:2.3:a:gotac:police_statistics_database_system:*:*:*:*:*:*:*:*
EPSS
Процентиль: 49%
0.00262
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-434
Связанные уязвимости
CVSS3: 9.8
github
23 дня назад
Police Statistics Database System developed by Gotac has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attacker to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.
EPSS
Процентиль: 49%
0.00262
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-434