Логотип exploitDog
bind:CVE-2019-11401
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-11401

Количество 2

Количество 2

nvd логотип

CVE-2019-11401

почти 7 лет назад

A issue was discovered in SiteServer CMS 6.9.0. It allows remote attackers to execute arbitrary code because an administrator can add the permitted file extension .aassp, which is converted to .asp because the "as" substring is deleted.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-ff4w-8chr-w2x9

больше 3 лет назад

SiteServer CMS RCE via unsafe file upload

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-11401

A issue was discovered in SiteServer CMS 6.9.0. It allows remote attackers to execute arbitrary code because an administrator can add the permitted file extension .aassp, which is converted to .asp because the "as" substring is deleted.

CVSS3: 7.2
2%
Низкий
почти 7 лет назад
github логотип
GHSA-ff4w-8chr-w2x9

SiteServer CMS RCE via unsafe file upload

CVSS3: 7.2
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу