Lucene search

K
osvGoogleOSV:GHSA-48R9-4V93-X4WH
HistoryMay 17, 2022 - 5:29 a.m.

DOMPDF Remote File Inclusion Vulnerability

2022-05-1705:29:50
Google
osv.dev
7
dompdf
remote file inclusion
php
vulnerability
dompdf 0.6.0 beta1
arbitrary code execution
url
input file parameter
software

AI Score

7.8

Confidence

High

EPSS

0.005

Percentile

77.7%

PHP remote file inclusion vulnerability in dompdf.php in dompdf 0.6.0 beta1 allows remote attackers to execute arbitrary PHP code via a URL in the input_file parameter.

AI Score

7.8

Confidence

High

EPSS

0.005

Percentile

77.7%