9.8

CVE-2020-4043

Phar unserialization vulnerability in phpMussel

phpMussel from versions 1.0.0 and less than 1.6.0 has an unserialization vulnerability in PHP's phar wrapper. Uploading a specially crafted file to an affected version allows arbitrary code execution (discovered, tested, and confirmed by myself), so the risk factor should be regarded as very high. Newer phpMussel versions don't use PHP's phar wrapper, and are therefore unaffected. This has been fixed in version 1.6.0.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phpmussel ProjectPhpmussel Version >= 1.0.0 < 1.6.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.6% 0.833
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
security-advisories@github.com 7.7 3.1 4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N
CWE-502 Deserialization of Untrusted Data

The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.

https://github.com/phpMussel/phpMussel/commit/97f25973433921c1f953430f32d3081adc4851a4
Patch
Third Party Advisory
Release Notes
https://github.com/phpMussel/phpMussel/issues/167
Patch
Third Party Advisory
https://github.com/phpMussel/phpMussel/pull/173
Patch
Third Party Advisory
https://github.com/phpMussel/phpMussel/security/advisories/GHSA-qr95-4mq5-r3fh
Third Party Advisory
Mitigation
https://github.com/phpMussel/phpMussel/security/policy#currently-known-vulnerabilities
Third Party Advisory