Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-38pm-jvpp-x7rv

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Fretwell-Downing Informatics (FDI) OLIB7 WebView 2.5.1.1 allows remote authenticated users to obtain sensitive information from files via the infile parameter to the default URI under cgi/, as demonstrated by the (1) get_settings.ini, (2) setup.ini, and (3) text.ini files.

Fretwell-Downing Informatics (FDI) OLIB7 WebView 2.5.1.1 allows remote authenticated users to obtain sensitive information from files via the infile parameter to the default URI under cgi/, as demonstrated by the (1) get_settings.ini, (2) setup.ini, and (3) text.ini files.

EPSS

Процентиль: 89%
0.04506
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
около 17 лет назад

Fretwell-Downing Informatics (FDI) OLIB7 WebView 2.5.1.1 allows remote authenticated users to obtain sensitive information from files via the infile parameter to the default URI under cgi/, as demonstrated by the (1) get_settings.ini, (2) setup.ini, and (3) text.ini files.

EPSS

Процентиль: 89%
0.04506
Низкий

Дефекты

CWE-20