Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-5094

Опубликовано: 26 авг. 2012
Источник: debian
EPSS Низкий

Описание

The deleteinstallfiles function in control/ContentController.php in SilverStripe 2.3.x before 2.3.7 does not require ADMIN permissions, which allows remote attackers to delete index.php and "disrupt mod_rewrite-less URL routing."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
silverstripeitppackage

Примечания

  • http://seclists.org/oss-sec/2012/q2/209

EPSS

Процентиль: 76%
0.01735
Низкий

Связанные уязвимости

nvd
почти 14 лет назад

The deleteinstallfiles function in control/ContentController.php in SilverStripe 2.3.x before 2.3.7 does not require ADMIN permissions, which allows remote attackers to delete index.php and "disrupt mod_rewrite-less URL routing."

github
около 4 лет назад

The deleteinstallfiles function in control/ContentController.php in SilverStripe 2.3.x before 2.3.7 does not require ADMIN permissions, which allows remote attackers to delete index.php and "disrupt mod_rewrite-less URL routing."

EPSS

Процентиль: 76%
0.01735
Низкий