Логотип exploitDog
bind:CVE-2017-16251
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-16251

Количество 2

Количество 2

nvd логотип

CVE-2017-16251

почти 8 лет назад

A vulnerability in the conferencing component of Mitel ST 14.2, release GA28 and earlier, could allow an authenticated user to upload a malicious script to the Personal Library by a crafted POST request. Successful exploit could allow an attacker to execute arbitrary code within the context of the application.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-96x4-p3v5-f78p

больше 3 лет назад

A vulnerability in the conferencing component of Mitel ST 14.2, release GA28 and earlier, could allow an authenticated user to upload a malicious script to the Personal Library by a crafted POST request. Successful exploit could allow an attacker to execute arbitrary code within the context of the application.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-16251

A vulnerability in the conferencing component of Mitel ST 14.2, release GA28 and earlier, could allow an authenticated user to upload a malicious script to the Personal Library by a crafted POST request. Successful exploit could allow an attacker to execute arbitrary code within the context of the application.

CVSS3: 8.8
1%
Низкий
почти 8 лет назад
github логотип
GHSA-96x4-p3v5-f78p

A vulnerability in the conferencing component of Mitel ST 14.2, release GA28 and earlier, could allow an authenticated user to upload a malicious script to the Personal Library by a crafted POST request. Successful exploit could allow an attacker to execute arbitrary code within the context of the application.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу