Логотип exploitDog
bind: "CVE-2023-53872"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2023-53872"

Количество 2

Количество 2

nvd логотип

CVE-2023-53872

около 2 месяцев назад

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

EPSS: Низкий
github логотип

GHSA-pmxp-m64w-v7f6

около 2 месяцев назад

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-53872

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

1%
Низкий
около 2 месяцев назад
github логотип
GHSA-pmxp-m64w-v7f6

Wp2Fac 1.0 contains an OS command injection vulnerability in the send.php endpoint that allows remote attackers to execute arbitrary system commands. Attackers can inject shell commands through the 'numara' parameter by appending shell commands with '&' operators to execute malicious code.

1%
Низкий
около 2 месяцев назад

Уязвимостей на страницу