Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2559-m273-3qpf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An information disclosure vulnerability in rConfig 3.9.5 has been fixed for version 3.9.6. This vulnerability allowed remote authenticated attackers to read files on the system via a crafted request sent to to the /lib/crud/configcompare.crud.php script.

An information disclosure vulnerability in rConfig 3.9.5 has been fixed for version 3.9.6. This vulnerability allowed remote authenticated attackers to read files on the system via a crafted request sent to to the /lib/crud/configcompare.crud.php script.

EPSS

Процентиль: 19%
0.00059
Низкий

Дефекты

CWE-552

Связанные уязвимости

CVSS3: 6.5
nvd
около 4 лет назад

An information disclosure vulnerability in rConfig 3.9.5 has been fixed for version 3.9.6. This vulnerability allowed remote authenticated attackers to read files on the system via a crafted request sent to to the /lib/crud/configcompare.crud.php script.

EPSS

Процентиль: 19%
0.00059
Низкий

Дефекты

CWE-552