[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Remote Code Execution Vulnerability in MediaWiki PandocUpload Extension - CVE-2023-35333

ID: oval:org.secpod.oval:def:90932Date: (C)2023-07-13   (M)2023-11-10
Class: VULNERABILITYFamily: unix




MediaWiki PandocUpload Extension Remote Code Execution Vulnerability. An authenticated attacker could exploit this vulnerability by uploading a file with the destination name as a malicious payload due to shell arguments not being properly escaped. When successfully exploited this could allow the malicious actor to perform remote code execution.

Platform:
Linux
Product:
MediaWiki PandocUpload Extension
Reference:
CVE-2023-35333
CVE    1
CVE-2023-35333

© SecPod Technologies