Логотип exploitDog
bind:CVE-2016-10751
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-10751

Количество 2

Количество 2

nvd логотип

CVE-2016-10751

больше 6 лет назад

osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter. This is exploitable for remote PHP code execution because an administrator can upload an image that contains PHP code in the EXIF data via index.php?page=ajax&action=ajax_upload.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-rx8m-6wvh-3j5h

больше 3 лет назад

osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter. This is exploitable for remote PHP code execution because an administrator can upload an image that contains PHP code in the EXIF data via index.php?page=ajax&action=ajax_upload.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2016-10751

osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter. This is exploitable for remote PHP code execution because an administrator can upload an image that contains PHP code in the EXIF data via index.php?page=ajax&action=ajax_upload.

CVSS3: 7.2
1%
Низкий
больше 6 лет назад
github логотип
GHSA-rx8m-6wvh-3j5h

osClass 3.6.1 allows oc-admin/plugins.php Directory Traversal via the plugin parameter. This is exploitable for remote PHP code execution because an administrator can upload an image that contains PHP code in the EXIF data via index.php?page=ajax&action=ajax_upload.

CVSS3: 7.2
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу