Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2vr9-3x9c-f2f7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

EPSS

Процентиль: 93%
0.06272
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 17 лет назад

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

EPSS

Процентиль: 93%
0.06272
Низкий

Дефекты

CWE-200