Логотип exploitDog
bind:CVE-2006-3608
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2006-3608

Количество 2

Количество 2

nvd логотип

CVE-2006-3608

больше 19 лет назад

The Gallery module in Simone Vellei Flatnuke 2.5.7 and earlier, when Gallery uploads are enabled, does not restrict the extensions of uploaded files that begin with a GIF header, which allows remote authenticated users to execute arbitrary PHP code via an uploaded .php file.

CVSS2: 4.6
EPSS: Низкий
github логотип

GHSA-rr9c-438j-jfpx

почти 4 года назад

The Gallery module in Simone Vellei Flatnuke 2.5.7 and earlier, when Gallery uploads are enabled, does not restrict the extensions of uploaded files that begin with a GIF header, which allows remote authenticated users to execute arbitrary PHP code via an uploaded .php file.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2006-3608

The Gallery module in Simone Vellei Flatnuke 2.5.7 and earlier, when Gallery uploads are enabled, does not restrict the extensions of uploaded files that begin with a GIF header, which allows remote authenticated users to execute arbitrary PHP code via an uploaded .php file.

CVSS2: 4.6
4%
Низкий
больше 19 лет назад
github логотип
GHSA-rr9c-438j-jfpx

The Gallery module in Simone Vellei Flatnuke 2.5.7 and earlier, when Gallery uploads are enabled, does not restrict the extensions of uploaded files that begin with a GIF header, which allows remote authenticated users to execute arbitrary PHP code via an uploaded .php file.

4%
Низкий
почти 4 года назад

Уязвимостей на страницу