Логотип exploitDog
bind:CVE-2005-0778
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2005-0778

Количество 2

Количество 2

nvd логотип

CVE-2005-0778

почти 21 год назад

PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-73hp-37fm-9jq7

почти 4 года назад

PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2005-0778

PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif.

CVSS2: 5
0%
Низкий
почти 21 год назад
github логотип
GHSA-73hp-37fm-9jq7

PhotoPost PHP 5.0 RC3 does not fully verify that an uploaded file is an image file, which allows remote attackers to inject arbitrary Javascript by uploading non-image files with an image extension such as .gif.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу