Логотип exploitDog
bind:CVE-2019-12868
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-12868

Количество 2

Количество 2

nvd логотип

CVE-2019-12868

больше 6 лет назад

app/Model/Server.php in MISP 2.4.109 allows remote command execution by a super administrator because the PHP file_exists function is used with user-controlled entries, and phar:// URLs trigger deserialization.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-p73m-v6fq-jvc8

больше 3 лет назад

app/Model/Server.php in MISP 2.4.109 allows remote command execution by a super administrator because the PHP file_exists function is used with user-controlled entries, and phar:// URLs trigger deserialization.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-12868

app/Model/Server.php in MISP 2.4.109 allows remote command execution by a super administrator because the PHP file_exists function is used with user-controlled entries, and phar:// URLs trigger deserialization.

CVSS3: 7.2
2%
Низкий
больше 6 лет назад
github логотип
GHSA-p73m-v6fq-jvc8

app/Model/Server.php in MISP 2.4.109 allows remote command execution by a super administrator because the PHP file_exists function is used with user-controlled entries, and phar:// URLs trigger deserialization.

CVSS3: 7.2
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу