Логотип exploitDog
bind:CVE-2022-2102
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-2102

Количество 3

Количество 3

nvd логотип

CVE-2022-2102

около 3 лет назад

Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

CVSS3: 9.4
EPSS: Низкий
github логотип

GHSA-xx8c-v55p-48rc

около 3 лет назад

Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2022-04311

около 3 лет назад

Уязвимость обработчика загрузки файлов микропрограммного обеспечения SEPCOS Single Package реле управления и защиты Secheron SEPCOS, позволяющая нарушителю загружать произвольные файлы

CVSS3: 9.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-2102

Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

CVSS3: 9.4
0%
Низкий
около 3 лет назад
github логотип
GHSA-xx8c-v55p-48rc

Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-04311

Уязвимость обработчика загрузки файлов микропрограммного обеспечения SEPCOS Single Package реле управления и защиты Secheron SEPCOS, позволяющая нарушителю загружать произвольные файлы

CVSS3: 9.4
0%
Низкий
около 3 лет назад

Уязвимостей на страницу