Skip to content

Commit

Permalink
automatic module_metadata_base.json update
Browse files Browse the repository at this point in the history
  • Loading branch information
msjenkins-r7 committed Feb 24, 2023
1 parent 20dbc17 commit 020d2d3
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions db/modules_metadata_base.json
Original file line number Diff line number Diff line change
Expand Up @@ -63294,7 +63294,7 @@
"Askar",
"jheysel-r7"
],
"description": "Froxlor v2.0.6 and below suffer from a bug that allows authenticated users to change the application logs path\n to any directory on the OS level which the user www-data can write without restrictions from the backend which\n leads to writing a malicious Twig template that the application will render. That will lead to achieving a\n remote command execution under the user www-data.",
"description": "Froxlor v2.0.7 and below suffer from a bug that allows authenticated users to change the application logs path\n to any directory on the OS level which the user www-data can write without restrictions from the backend which\n leads to writing a malicious Twig template that the application will render. That will lead to achieving a\n remote command execution under the user www-data.",
"references": [
"URL-https://shells.systems/author/askar/",
"CVE-2023-0315"
Expand All @@ -63321,7 +63321,7 @@
"Linux ",
"Unix Command"
],
"mod_time": "2023-02-22 12:28:28 +0000",
"mod_time": "2023-02-24 13:33:10 +0000",
"path": "/modules/exploits/linux/http/froxlor_log_path_rce.rb",
"is_install_path": true,
"ref_name": "linux/http/froxlor_log_path_rce",
Expand Down

0 comments on commit 020d2d3

Please sign in to comment.