Описание
An authenticated arbitrary file upload vulnerability in the Documents module of SPIP v4.3.3 allows attackers to execute arbitrary code via uploading a crafted PDF file.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needs-triage | |
| esm-apps-legacy/xenial | needs-triage | |
| esm-apps/bionic | needs-triage | |
| esm-apps/focal | needs-triage | |
| esm-apps/jammy | needs-triage | |
| esm-apps/noble | needs-triage | |
| esm-apps/resolute | needs-triage | |
| esm-apps/xenial | ignored | end of ESM support, was needs-triage |
| focal | ignored | end of standard support, was needs-triage |
| jammy | needs-triage |
Показывать по
10
EPSS
Процентиль: 45%
0.00568
Низкий
6.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.3
nvd
почти 2 года назад
An authenticated arbitrary file upload vulnerability in the Documents module of SPIP v4.3.3 allows attackers to execute arbitrary code via uploading a crafted PDF file.
CVSS3: 6.3
debian
почти 2 года назад
An authenticated arbitrary file upload vulnerability in the Documents ...
CVSS3: 6.3
github
почти 2 года назад
An authenticated arbitrary file upload vulnerability in the Documents module of SPIP v4.3.3 allows attackers to execute arbitrary code via uploading a crafted PDF file.
EPSS
Процентиль: 45%
0.00568
Низкий
6.3 Medium
CVSS3