Логотип exploitDog
bind:CVE-2020-37090
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-37090

Количество 2

Количество 2

nvd логотип

CVE-2020-37090

5 дней назад

School ERP Pro 1.0 contains a file upload vulnerability that allows students to upload arbitrary PHP files to the messaging system. Attackers can upload malicious PHP scripts through the message attachment feature, enabling remote code execution on the server.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-ggf7-6xmv-285q

5 дней назад

School ERP Pro 1.0 contains a file upload vulnerability that allows students to upload arbitrary PHP files to the messaging system. Attackers can upload malicious PHP scripts through the message attachment feature, enabling remote code execution on the server.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-37090

School ERP Pro 1.0 contains a file upload vulnerability that allows students to upload arbitrary PHP files to the messaging system. Attackers can upload malicious PHP scripts through the message attachment feature, enabling remote code execution on the server.

CVSS3: 9.8
0%
Низкий
5 дней назад
github логотип
GHSA-ggf7-6xmv-285q

School ERP Pro 1.0 contains a file upload vulnerability that allows students to upload arbitrary PHP files to the messaging system. Attackers can upload malicious PHP scripts through the message attachment feature, enabling remote code execution on the server.

CVSS3: 9.8
0%
Низкий
5 дней назад

Уязвимостей на страницу