Vulnerability CVE-2023-4195


Published: 2023-08-06

Description:
PHP Remote File Inclusion in GitHub repository cockpit-hq/cockpit prior to 2.6.3.

Type:

CWE-98

(Improper Control of Filename for Include/Require Statement in PHP Program ('PHP File Inclusion'))

 References:
https://github.com/cockpit-hq/cockpit/commit/800c05f1984db291769ffa5fdfb1d3e50968e95b
https://huntr.dev/bounties/0bd5da2f-0e29-47ce-90f3-06518656bfd6

Copyright 2024, cxsecurity.com

 

Back to Top