Логотип exploitDog
bind:CVE-2020-25790
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-25790

Количество 2

Количество 2

nvd логотип

CVE-2020-25790

больше 5 лет назад

Typesetter CMS 5.x through 5.1 allows admins to upload and execute arbitrary PHP code via a .php file inside a ZIP archive. NOTE: the vendor disputes the significance of this report because "admins are considered trustworthy"; however, the behavior "contradicts our security policy" and is being fixed for 5.2

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-c7mg-73jx-7c7x

больше 3 лет назад

** DISPUTED ** Typesetter CMS 5.x through 5.1 allows admins to upload and execute arbitrary PHP code via a .php file inside a ZIP archive. NOTE: the vendor disputes the significance of this report because "admins are considered trustworthy"; however, the behavior "contradicts our security policy" and is being fixed for 5.2.

CVSS3: 7.2
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-25790

Typesetter CMS 5.x through 5.1 allows admins to upload and execute arbitrary PHP code via a .php file inside a ZIP archive. NOTE: the vendor disputes the significance of this report because "admins are considered trustworthy"; however, the behavior "contradicts our security policy" and is being fixed for 5.2

CVSS3: 7.2
41%
Средний
больше 5 лет назад
github логотип
GHSA-c7mg-73jx-7c7x

** DISPUTED ** Typesetter CMS 5.x through 5.1 allows admins to upload and execute arbitrary PHP code via a .php file inside a ZIP archive. NOTE: the vendor disputes the significance of this report because "admins are considered trustworthy"; however, the behavior "contradicts our security policy" and is being fixed for 5.2.

CVSS3: 7.2
41%
Средний
больше 3 лет назад

Уязвимостей на страницу