Логотип exploitDog
bind:CVE-2023-0670
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-0670

Количество 2

Количество 2

nvd логотип

CVE-2023-0670

почти 3 года назад

Ulearn version a5a7ca20de859051ea0470542844980a66dfc05d allows an attacker with administrator permissions to obtain remote code execution on the server through the image upload functionality. This occurs because the application does not validate that the uploaded image is actually an image.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-vg83-7v95-762v

почти 3 года назад

Ulearn version a5a7ca20de859051ea0470542844980a66dfc05d allows an attacker with administrator permissions to obtain remote code execution on the server through the image upload functionality. This occurs because the application does not validate that the uploaded image is actually an image.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-0670

Ulearn version a5a7ca20de859051ea0470542844980a66dfc05d allows an attacker with administrator permissions to obtain remote code execution on the server through the image upload functionality. This occurs because the application does not validate that the uploaded image is actually an image.

CVSS3: 7.2
1%
Низкий
почти 3 года назад
github логотип
GHSA-vg83-7v95-762v

Ulearn version a5a7ca20de859051ea0470542844980a66dfc05d allows an attacker with administrator permissions to obtain remote code execution on the server through the image upload functionality. This occurs because the application does not validate that the uploaded image is actually an image.

CVSS3: 7.2
1%
Низкий
почти 3 года назад

Уязвимостей на страницу