Логотип exploitDog
bind:CVE-2012-1468
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-1468

Количество 4

Количество 4

ubuntu логотип

CVE-2012-1468

больше 13 лет назад

Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct request to the file in submission/original/ in the associated article directory, as demonstrated using .pHp, .asp, and other extensions.

CVSS2: 6
EPSS: Низкий
nvd логотип

CVE-2012-1468

больше 13 лет назад

Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct request to the file in submission/original/ in the associated article directory, as demonstrated using .pHp, .asp, and other extensions.

CVSS2: 6
EPSS: Низкий
debian логотип

CVE-2012-1468

больше 13 лет назад

Incomplete blacklist vulnerability in Open Journal Systems before 2.3. ...

CVSS2: 6
EPSS: Низкий
github логотип

GHSA-hv36-f2fr-5259

больше 3 лет назад

Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct request to the file in submission/original/ in the associated article directory, as demonstrated using .pHp, .asp, and other extensions.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-1468

Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct request to the file in submission/original/ in the associated article directory, as demonstrated using .pHp, .asp, and other extensions.

CVSS2: 6
4%
Низкий
больше 13 лет назад
nvd логотип
CVE-2012-1468

Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct request to the file in submission/original/ in the associated article directory, as demonstrated using .pHp, .asp, and other extensions.

CVSS2: 6
4%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-1468

Incomplete blacklist vulnerability in Open Journal Systems before 2.3. ...

CVSS2: 6
4%
Низкий
больше 13 лет назад
github логотип
GHSA-hv36-f2fr-5259

Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executable extension that is not ".php", then accessing it via a direct request to the file in submission/original/ in the associated article directory, as demonstrated using .pHp, .asp, and other extensions.

4%
Низкий
больше 3 лет назад

Уязвимостей на страницу