0x09AL/0x09al.github.io

0x09AL/0x09al.github.io

Releases0
Stars2

CVE History

CVEPublishedCVSS v3CVSS v2
4.6 MEDIUM

An unanchored /[a-z]{2}/ regular expression in ISPConfig before 3.1.13 makes it possible to include arbitrary files, leading to code execution. This is exploitable by authenticated users who have local filesystem access.