QID 994780
Date Published: 2023-08-10
QID 994780: PHP (Composer) Security Update for cockpit-hq/cockpit (GHSA-xcq3-7pf3-5jvc)
PHP Remote File Inclusion in GitHub repository cockpit-hq/cockpit prior to 2.6.3. Users may upload php files through the system file upload utility to obtain remote code execution.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-xcq3-7pf3-5jvc for updates and patch information.
Vendor References
- GHSA-xcq3-7pf3-5jvc -
github.com/advisories/GHSA-xcq3-7pf3-5jvc
CVEs related to QID 994780
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-xcq3-7pf3-5jvc | cockpit-hq/cockpit |
|