Логотип exploitDog
bind:CVE-2018-17798
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-17798

Количество 2

Количество 2

nvd логотип

CVE-2018-17798

больше 7 лет назад

An issue was discovered in zzcms 8.3. user/ztconfig.php allows remote attackers to delete arbitrary files via an absolute pathname in the oldimg parameter in an action=modify request. This can be leveraged for database access by deleting install.lock.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-qj4j-qpxh-h623

больше 3 лет назад

An issue was discovered in zzcms 8.3. user/ztconfig.php allows remote attackers to delete arbitrary files via an absolute pathname in the oldimg parameter in an action=modify request. This can be leveraged for database access by deleting install.lock.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-17798

An issue was discovered in zzcms 8.3. user/ztconfig.php allows remote attackers to delete arbitrary files via an absolute pathname in the oldimg parameter in an action=modify request. This can be leveraged for database access by deleting install.lock.

CVSS3: 6.5
0%
Низкий
больше 7 лет назад
github логотип
GHSA-qj4j-qpxh-h623

An issue was discovered in zzcms 8.3. user/ztconfig.php allows remote attackers to delete arbitrary files via an absolute pathname in the oldimg parameter in an action=modify request. This can be leveraged for database access by deleting install.lock.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу