Описание
An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing a PHP webshell to a publicly accessible directory and execute arbitrary code on the server.
EPSS
Процентиль: 25%
0.00328
Низкий
9.9 Critical
CVSS3
Дефекты
CWE-434
Связанные уязвимости
CVSS3: 9.9
github
13 дней назад
An unrestricted SCORM file upload vulnerability in Koollab LMS allowed an authenticated module designer to upload a SCORM package containing a PHP webshell to a publicly accessible directory and execute arbitrary code on the server.
EPSS
Процентиль: 25%
0.00328
Низкий
9.9 Critical
CVSS3
Дефекты
CWE-434