Логотип exploitDog
bind:CVE-2023-46865
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-46865

Количество 2

Количество 2

nvd логотип

CVE-2023-46865

больше 2 лет назад

/api/v1/company/upload-logo in CompanyController.php in crater through 6.0.6 allows a superadmin to execute arbitrary PHP code by placing this code into an image/png IDAT chunk of a Company Logo image.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-5cw4-vrv3-8qx9

больше 2 лет назад

/api/v1/company/upload-logo in CompanyController.php in crater through 6.0.6 allows a superadmin to execute arbitrary PHP code by placing this code into an image/png IDAT chunk of a Company Logo image.

CVSS3: 7.2
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-46865

/api/v1/company/upload-logo in CompanyController.php in crater through 6.0.6 allows a superadmin to execute arbitrary PHP code by placing this code into an image/png IDAT chunk of a Company Logo image.

CVSS3: 7.2
69%
Средний
больше 2 лет назад
github логотип
GHSA-5cw4-vrv3-8qx9

/api/v1/company/upload-logo in CompanyController.php in crater through 6.0.6 allows a superadmin to execute arbitrary PHP code by placing this code into an image/png IDAT chunk of a Company Logo image.

CVSS3: 7.2
69%
Средний
больше 2 лет назад

Уязвимостей на страницу