ZeroHour

CVE-2022-27257

CVSS 3.1
7.5 high
EPSS
1%p68
Published
()
Modified
Description

A PHP Local File Inclusion vulneraility in the default Redbasic theme for Hubzilla before version 7.2 allows remote attackers to include arbitrary php files via the schema parameter.

Vendors
hubzilla
Products
hubzilla
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.