Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2vr9-3x9c-f2f7

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

EPSS

Процентиль: 87%
0.03161
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 17 лет назад

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

EPSS

Процентиль: 87%
0.03161
Низкий

Дефекты

CWE-200