Логотип exploitDog
bind:CVE-2025-10267
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-10267

Количество 2

Количество 2

nvd логотип

CVE-2025-10267

5 месяцев назад

NUP Portal developed by NewType Infortech has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly upload files. If the attacker manages to bypass the file extension restrictions, they could upload a webshell and execute it on the server side.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-c232-prcf-3728

5 месяцев назад

NUP Portal developed by NewType Infortech has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly upload files. If the attacker manages to bypass the file extension restrictions, they could upload a webshell and execute it on the server side.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-10267

NUP Portal developed by NewType Infortech has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly upload files. If the attacker manages to bypass the file extension restrictions, they could upload a webshell and execute it on the server side.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-c232-prcf-3728

NUP Portal developed by NewType Infortech has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly upload files. If the attacker manages to bypass the file extension restrictions, they could upload a webshell and execute it on the server side.

CVSS3: 5.3
0%
Низкий
5 месяцев назад

Уязвимостей на страницу