Lucene search

K
cve@huntrdevCVE-2023-2551
HistoryMay 05, 2023 - 8:15 p.m.

CVE-2023-2551

2023-05-0520:15:10
CWE-98
CWE-829
@huntrdev
web.nvd.nist.gov
119
cve-2023-2551
php
remote file inclusion
github
repository
unilogies
bumsys

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.9

Confidence

High

EPSS

0.003

Percentile

65.3%

PHP Remote File Inclusion in GitHub repository unilogies/bumsys prior to 2.1.1.

Affected configurations

Nvd
Node
bumsys_projectbumsysRange<2.1.1
VendorProductVersionCPE
bumsys_projectbumsys*cpe:2.3:a:bumsys_project:bumsys:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "unilogies",
    "product": "unilogies/bumsys",
    "versions": [
      {
        "version": "unspecified",
        "lessThan": "2.1.1",
        "status": "affected",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.9

Confidence

High

EPSS

0.003

Percentile

65.3%

Related for CVE-2023-2551