Логотип exploitDog
bind:CVE-2020-13166
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13166

Количество 2

Количество 2

nvd логотип

CVE-2020-13166

больше 5 лет назад

The management tool in MyLittleAdmin 3.8 allows remote attackers to execute arbitrary code because machineKey is hardcoded (the same for all customers' installations) in web.config, and can be used to send serialized ASP code.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-hrgv-3gf4-fvpc

больше 3 лет назад

The management tool in MyLittleAdmin 3.8 allows remote attackers to execute arbitrary code because machineKey is hardcoded (the same for all customers' installations) in web.config, and can be used to send serialized ASP code.

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-13166

The management tool in MyLittleAdmin 3.8 allows remote attackers to execute arbitrary code because machineKey is hardcoded (the same for all customers' installations) in web.config, and can be used to send serialized ASP code.

CVSS3: 9.8
77%
Высокий
больше 5 лет назад
github логотип
GHSA-hrgv-3gf4-fvpc

The management tool in MyLittleAdmin 3.8 allows remote attackers to execute arbitrary code because machineKey is hardcoded (the same for all customers' installations) in web.config, and can be used to send serialized ASP code.

CVSS3: 9.8
77%
Высокий
больше 3 лет назад

Уязвимостей на страницу