7.5
CVE-2004-2560
- EPSS 2.76%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:09:53
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
DokuWiki before 2004-10-19, when used on a web server that permits execution based on file extension, allows remote attackers to execute arbitrary code by uploading a file with an appropriate extension such as ".php" or ".cgi".
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-07-04
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-07-07
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-07-12
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-07-21
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-07-25
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-08-08
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-08-15a
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-08-22
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-09-12
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-09-25
Andreas Gohr ≫ Dokuwiki Versionrelease_2004-09-30
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.76% | 0.843 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://wiki.splitbrain.org/wiki:old_changes
http://www.osvdb.org/11084
http://www.securityfocus.com/bid/11486
https://exchange.xforce.ibmcloud.com/vulnerabilities/17899