7.5
CVE-2011-5005
- EPSS 6.58%
- Veröffentlicht 25.12.2011 01:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Unrestricted file upload vulnerability in QuiXplorer 2.3 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension using the upload action to index.php, then accessing it via a direct request to the file in an unspecified directory.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Claudio Klingler ≫ Quixplorer Version <= 2.3
Claudio Klingler ≫ Quixplorer Version1.0
Claudio Klingler ≫ Quixplorer Version1.1
Claudio Klingler ≫ Quixplorer Version1.2
Claudio Klingler ≫ Quixplorer Version1.4
Claudio Klingler ≫ Quixplorer Version1.5
Claudio Klingler ≫ Quixplorer Version1.6
Claudio Klingler ≫ Quixplorer Version2.0
Claudio Klingler ≫ Quixplorer Version2.1.1
Claudio Klingler ≫ Quixplorer Version2.2
Mads Brunn ≫ T3quixplorer Version1.0.0 Update-
Mads Brunn ≫ T3quixplorer Version1.0.1
Mads Brunn ≫ T3quixplorer Version1.0.2
Mads Brunn ≫ T3quixplorer Version1.2.0
Mads Brunn ≫ T3quixplorer Version1.3.0
Mads Brunn ≫ T3quixplorer Version1.4.0
Mads Brunn ≫ T3quixplorer Version1.5.0
Mads Brunn ≫ T3quixplorer Version1.6.0
Mads Brunn ≫ T3quixplorer Version1.7.0
Mads Brunn ≫ T3quixplorer Version1.7.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 6.58% | 0.91 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|