Описание
ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| viewvc | fixed | 1.1.5-1 | package |
EPSS
Процентиль: 74%
0.0082
Низкий
Связанные уязвимости
ubuntu
около 16 лет назад
ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.
nvd
около 16 лет назад
ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.
github
почти 4 года назад
ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.
EPSS
Процентиль: 74%
0.0082
Низкий