Количество 2
Количество 2
CVE-2022-50911
Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue.
GHSA-5q4r-f47x-9m97
Bitrix24 contains an authenticated remote code execution vulnerability that allows logged-in attackers to execute arbitrary system commands through the PHP command line admin interface. Attackers can leverage the vulnerability by sending crafted POST requests to the administrative endpoint with system commands to execute code with the web application's privileges.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-50911 Rejected reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. | 26 дней назад | |||
GHSA-5q4r-f47x-9m97 Bitrix24 contains an authenticated remote code execution vulnerability that allows logged-in attackers to execute arbitrary system commands through the PHP command line admin interface. Attackers can leverage the vulnerability by sending crafted POST requests to the administrative endpoint with system commands to execute code with the web application's privileges. | CVSS3: 8.8 | 26 дней назад |
Уязвимостей на страницу