Логотип exploitDog
bind:CVE-2021-47753
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-47753

Количество 2

Количество 2

nvd логотип

CVE-2021-47753

24 дня назад

phpKF CMS 3.00 Beta y6 contains an unauthenticated file upload vulnerability that allows remote attackers to execute arbitrary code by bypassing file extension checks. Attackers can upload a PHP file disguised as a PNG, rename it, and execute system commands through a crafted web shell parameter.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-q6vq-8ww2-4v69

24 дня назад

phpKF CMS 3.00 Beta y6 contains an unauthenticated file upload vulnerability that allows remote attackers to execute arbitrary code by bypassing file extension checks. Attackers can upload a PHP file disguised as a PNG, rename it, and execute system commands through a crafted web shell parameter.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-47753

phpKF CMS 3.00 Beta y6 contains an unauthenticated file upload vulnerability that allows remote attackers to execute arbitrary code by bypassing file extension checks. Attackers can upload a PHP file disguised as a PNG, rename it, and execute system commands through a crafted web shell parameter.

CVSS3: 9.8
0%
Низкий
24 дня назад
github логотип
GHSA-q6vq-8ww2-4v69

phpKF CMS 3.00 Beta y6 contains an unauthenticated file upload vulnerability that allows remote attackers to execute arbitrary code by bypassing file extension checks. Attackers can upload a PHP file disguised as a PNG, rename it, and execute system commands through a crafted web shell parameter.

CVSS3: 9.8
0%
Низкий
24 дня назад

Уязвимостей на страницу