Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10514

Опубликовано: 10 окт. 2017
Источник: debian
EPSS Низкий

Описание

url_check_format in include/functions.inc.php in Piwigo before 2.8.3 allows remote attackers to bypass intended access restrictions via a URL that contains a " character, or a URL beginning with a substring other than the http:// or https:// substring.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
piwigoremovedpackage

EPSS

Процентиль: 67%
0.01222
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 9 лет назад

url_check_format in include/functions.inc.php in Piwigo before 2.8.3 allows remote attackers to bypass intended access restrictions via a URL that contains a " character, or a URL beginning with a substring other than the http:// or https:// substring.

CVSS3: 6.5
nvd
почти 9 лет назад

url_check_format in include/functions.inc.php in Piwigo before 2.8.3 allows remote attackers to bypass intended access restrictions via a URL that contains a " character, or a URL beginning with a substring other than the http:// or https:// substring.

CVSS3: 6.5
github
больше 4 лет назад

url_check_format in include/functions.inc.php in Piwigo before 2.8.3 allows remote attackers to bypass intended access restrictions via a URL that contains a " character, or a URL beginning with a substring other than the http:// or https:// substring.

EPSS

Процентиль: 67%
0.01222
Низкий