Логотип exploitDog
bind:CVE-2021-47734
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-47734

Количество 2

Количество 2

nvd логотип

CVE-2021-47734

около 2 месяцев назад

CMSimple 5.4 contains an authenticated local file inclusion vulnerability that allows remote attackers to manipulate PHP session files and execute arbitrary code. Attackers can leverage the vulnerability by changing the functions file path and uploading malicious PHP code through session file upload mechanisms.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-62fv-j8g5-r47m

около 2 месяцев назад

CMSimple 5.4 contains an authenticated local file inclusion vulnerability that allows remote attackers to manipulate PHP session files and execute arbitrary code. Attackers can leverage the vulnerability by changing the functions file path and uploading malicious PHP code through session file upload mechanisms.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-47734

CMSimple 5.4 contains an authenticated local file inclusion vulnerability that allows remote attackers to manipulate PHP session files and execute arbitrary code. Attackers can leverage the vulnerability by changing the functions file path and uploading malicious PHP code through session file upload mechanisms.

CVSS3: 7.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-62fv-j8g5-r47m

CMSimple 5.4 contains an authenticated local file inclusion vulnerability that allows remote attackers to manipulate PHP session files and execute arbitrary code. Attackers can leverage the vulnerability by changing the functions file path and uploading malicious PHP code through session file upload mechanisms.

CVSS3: 5.5
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу