Lucene search

K
cvelistRedhatCVELIST:CVE-2013-0206
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2013-0206

2022-10-0316:15:04
redhat
www.cve.org
unrestricted file upload
live css module
drupal
arbitrary code execution

7.4 High

AI Score

Confidence

Low

0.01 Low

EPSS

Percentile

83.9%

Unrestricted file upload vulnerability in the Live CSS module 6.x-2.x before 6.x-2.1 and 7.x-2.x before 7.x-2.7 for Drupal allows remote authenticated users with the “administer CSS” permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.

7.4 High

AI Score

Confidence

Low

0.01 Low

EPSS

Percentile

83.9%

Related for CVELIST:CVE-2013-0206