vendor:
Net Portal Dynamic System (NPDS)
by:
DarkFig
7.5
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: Net Portal Dynamic System (NPDS)
Affected Version From: <= 5.10
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Net Portal Dynamic System (NPDS) <= 5.10 Remote Code Execution 0day
This exploit allows an attacker to execute arbitrary code remotely on Net Portal Dynamic System (NPDS) version 5.10 and below. The exploit works regardless of PHP settings.
Mitigation:
Update Net Portal Dynamic System (NPDS) to version 5.11 or higher. Disable any unnecessary features or plugins.