Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-26r7-75pc-fxh9

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

calendar.php in Calendarix 0.7.20070307 allows remote attackers to obtain sensitive information via large values to the (1) year and (2) month parameters, which causes negative values to be passed to the mktime library call, and reveals the installation path in the error message.

calendar.php in Calendarix 0.7.20070307 allows remote attackers to obtain sensitive information via large values to the (1) year and (2) month parameters, which causes negative values to be passed to the mktime library call, and reveals the installation path in the error message.

EPSS

Процентиль: 59%
0.00381
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

calendar.php in Calendarix 0.7.20070307 allows remote attackers to obtain sensitive information via large values to the (1) year and (2) month parameters, which causes negative values to be passed to the mktime library call, and reveals the installation path in the error message.

EPSS

Процентиль: 59%
0.00381
Низкий