Логотип exploitDog
bind:CVE-2025-67084
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-67084

Количество 2

Количество 2

nvd логотип

CVE-2025-67084

24 дня назад

File upload vulnerability in InvoicePlane through 1.6.3 allows authenticated attackers to upload arbitrary PHP files into attachments, which can later be executed remotely, leading to Remote Code Execution (RCE).

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-jpvh-v7h3-v24c

24 дня назад

File upload vulnerability in InvoicePlane through 1.6.3 allows authenticated attackers to upload arbitrary PHP files into attachments, which can later be executed remotely, leading to Remote Code Execution (RCE).

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-67084

File upload vulnerability in InvoicePlane through 1.6.3 allows authenticated attackers to upload arbitrary PHP files into attachments, which can later be executed remotely, leading to Remote Code Execution (RCE).

CVSS3: 9.9
0%
Низкий
24 дня назад
github логотип
GHSA-jpvh-v7h3-v24c

File upload vulnerability in InvoicePlane through 1.6.3 allows authenticated attackers to upload arbitrary PHP files into attachments, which can later be executed remotely, leading to Remote Code Execution (RCE).

CVSS3: 6.5
0%
Низкий
24 дня назад

Уязвимостей на страницу