Логотип exploitDog
bind:CVE-2017-18048
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-18048

Количество 2

Количество 2

nvd логотип

CVE-2017-18048

около 8 лет назад

Monstra CMS 3.0.4 allows users to upload arbitrary files, which leads to remote command execution on the server, for example because .php (lowercase) is blocked but .PHP (uppercase) is not.

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-9gjw-qvrh-6f5r

больше 3 лет назад

Monstra CMS 3.0.4 allows users to upload arbitrary files, which leads to remote command execution on the server, for example because .php (lowercase) is blocked but .PHP (uppercase) is not.

CVSS3: 8.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-18048

Monstra CMS 3.0.4 allows users to upload arbitrary files, which leads to remote command execution on the server, for example because .php (lowercase) is blocked but .PHP (uppercase) is not.

CVSS3: 8.8
77%
Высокий
около 8 лет назад
github логотип
GHSA-9gjw-qvrh-6f5r

Monstra CMS 3.0.4 allows users to upload arbitrary files, which leads to remote command execution on the server, for example because .php (lowercase) is blocked but .PHP (uppercase) is not.

CVSS3: 8.8
77%
Высокий
больше 3 лет назад

Уязвимостей на страницу