Логотип exploitDog
bind:CVE-2023-53942
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-53942

Количество 2

Количество 2

nvd логотип

CVE-2023-53942

около 2 месяцев назад

File Thingie 2.5.7 contains an authenticated file upload vulnerability that allows remote attackers to upload malicious PHP zip archives to the web server. Attackers can create a custom PHP payload, upload and unzip it, and then execute arbitrary system commands through a crafted PHP script with a command parameter.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4rrg-j6g5-6x9x

около 2 месяцев назад

File Thingie 2.5.7 contains an authenticated file upload vulnerability that allows remote attackers to upload malicious PHP zip archives to the web server. Attackers can create a custom PHP payload, upload and unzip it, and then execute arbitrary system commands through a crafted PHP script with a command parameter.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-53942

File Thingie 2.5.7 contains an authenticated file upload vulnerability that allows remote attackers to upload malicious PHP zip archives to the web server. Attackers can create a custom PHP payload, upload and unzip it, and then execute arbitrary system commands through a crafted PHP script with a command parameter.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-4rrg-j6g5-6x9x

File Thingie 2.5.7 contains an authenticated file upload vulnerability that allows remote attackers to upload malicious PHP zip archives to the web server. Attackers can create a custom PHP payload, upload and unzip it, and then execute arbitrary system commands through a crafted PHP script with a command parameter.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу