Логотип exploitDog
bind:CVE-2019-12099
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12099

Количество 2

Количество 2

nvd логотип

CVE-2019-12099

больше 6 лет назад

In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.php and includes/classes/PHPFusion/Installer/Lib/Core.settings.inc mishandle executable files during avatar upload.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-7jx6-99j2-vhgc

больше 3 лет назад

In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.php and includes/classes/PHPFusion/Installer/Lib/Core.settings.inc mishandle executable files during avatar upload.

CVSS3: 8.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12099

In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.php and includes/classes/PHPFusion/Installer/Lib/Core.settings.inc mishandle executable files during avatar upload.

CVSS3: 8.8
42%
Средний
больше 6 лет назад
github логотип
GHSA-7jx6-99j2-vhgc

In PHP-Fusion 9.03.00, edit_profile.php allows remote authenticated users to execute arbitrary code because includes/dynamics/includes/form_fileinput.php and includes/classes/PHPFusion/Installer/Lib/Core.settings.inc mishandle executable files during avatar upload.

CVSS3: 8.8
42%
Средний
больше 3 лет назад

Уязвимостей на страницу