Vulnerabilities
Vulnerable Software
Rukovoditel:  >> Rukovoditel  Security Vulnerabilities
Rukovoditel before 2.4.1 allows XSS.
CVSS Score
6.1
EPSS Score
0.073
Published
2019-02-05
A file-upload vulnerability exists in Rukovoditel 2.3.1. index.php?module=configuration/save allows the user to upload a background image, and mishandles extension checking. It accepts uploads of PHP content if the first few characters match GIF data, and the filename ends in ".php" with mixed case, such as the .pHp extension.
CVSS Score
8.8
EPSS Score
0.038
Published
2019-01-02


Contact Us

Shodan ® - All rights reserved