Логотип exploitDog
bind:CVE-2020-26806
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-26806

Количество 2

Количество 2

nvd логотип

CVE-2020-26806

больше 4 лет назад

admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution, because filePath can have directory traversal and fileContent can be valid JSP code.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-cq3j-jr55-f9fq

больше 3 лет назад

admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution, because filePath can have directory traversal and fileContent can be valid JSP code.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-26806

admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution, because filePath can have directory traversal and fileContent can be valid JSP code.

CVSS3: 8.8
5%
Низкий
больше 4 лет назад
github логотип
GHSA-cq3j-jr55-f9fq

admin/file.do in ObjectPlanet Opinio before 7.15 allows Unrestricted File Upload of executable JSP files, resulting in remote code execution, because filePath can have directory traversal and fileContent can be valid JSP code.

CVSS3: 8.8
5%
Низкий
больше 3 лет назад

Уязвимостей на страницу