Логотип exploitDog
bind:CVE-2005-2955
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2005-2955

Количество 2

Количество 2

nvd логотип

CVE-2005-2955

почти 20 лет назад

config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute arbitrary code by uploading files with other executable extensions such as .inc, .php4, or others.

CVSS2: 4.6
EPSS: Низкий
github логотип

GHSA-xxwf-mr27-9j8v

около 3 лет назад

config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute arbitrary code by uploading files with other executable extensions such as .inc, .php4, or others.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2005-2955

config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute arbitrary code by uploading files with other executable extensions such as .inc, .php4, or others.

CVSS2: 4.6
0%
Низкий
почти 20 лет назад
github логотип
GHSA-xxwf-mr27-9j8v

config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute arbitrary code by uploading files with other executable extensions such as .inc, .php4, or others.

0%
Низкий
около 3 лет назад

Уязвимостей на страницу