Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2rq5-xfv5-vq54

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

nginx 0.8 before 0.8.40 and 0.7 before 0.7.66, when running on Windows, allows remote attackers to obtain source code or unparsed content of arbitrary files under the web document root by appending ::$DATA to the URI.

nginx 0.8 before 0.8.40 and 0.7 before 0.7.66, when running on Windows, allows remote attackers to obtain source code or unparsed content of arbitrary files under the web document root by appending ::$DATA to the URI.

EPSS

Процентиль: 97%
0.44217
Средний

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 15 лет назад

nginx 0.8 before 0.8.40 and 0.7 before 0.7.66, when running on Windows, allows remote attackers to obtain source code or unparsed content of arbitrary files under the web document root by appending ::$DATA to the URI.

nvd
больше 15 лет назад

nginx 0.8 before 0.8.40 and 0.7 before 0.7.66, when running on Windows, allows remote attackers to obtain source code or unparsed content of arbitrary files under the web document root by appending ::$DATA to the URI.

debian
больше 15 лет назад

nginx 0.8 before 0.8.40 and 0.7 before 0.7.66, when running on Windows ...

EPSS

Процентиль: 97%
0.44217
Средний

Дефекты

CWE-200