Логотип exploitDog
bind:CVE-2023-1970
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-1970

Количество 3

Количество 3

nvd логотип

CVE-2023-1970

почти 3 года назад

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as problematic, has been found in yuan1994 tpAdmin 1.3.12. This issue affects the function Upload of the file application\admin\controller\Upload.php. The manipulation of the argument file leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-225407. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-27pg-4cj6-8994

почти 3 года назад

yuan1994 tpAdmin Unrestricted Upload of File with Dangerous Type vulnerability

CVSS3: 7.2
EPSS: Низкий
fstec логотип

BDU:2023-02306

почти 3 года назад

Уязвимость функции Upload (application\admin\controller\Upload.php) библиотеки tpAdmin, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-1970

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as problematic, has been found in yuan1994 tpAdmin 1.3.12. This issue affects the function Upload of the file application\admin\controller\Upload.php. The manipulation of the argument file leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-225407. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 6.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-27pg-4cj6-8994

yuan1994 tpAdmin Unrestricted Upload of File with Dangerous Type vulnerability

CVSS3: 7.2
0%
Низкий
почти 3 года назад
fstec логотип
BDU:2023-02306

Уязвимость функции Upload (application\admin\controller\Upload.php) библиотеки tpAdmin, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.2
0%
Низкий
почти 3 года назад

Уязвимостей на страницу