Логотип exploitDog
bind: "CVE-2023-53872"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2023-53872"

Количество 2

Количество 2

nvd логотип

CVE-2023-53872

3 месяца назад

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

EPSS: Низкий
github логотип

GHSA-pmxp-m64w-v7f6

3 месяца назад

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-53872

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

1%
Низкий
3 месяца назад
github логотип
GHSA-pmxp-m64w-v7f6

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

1%
Низкий
3 месяца назад

Уязвимостей на страницу