Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4qxm-xm9h-rhmg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Usermin before 1.220 (20060629) allows remote attackers to read arbitrary files, possibly related to chfn/save.cgi not properly handling an empty shell parameter, which results in changing root's shell instead of the shell of a specified user.

Usermin before 1.220 (20060629) allows remote attackers to read arbitrary files, possibly related to chfn/save.cgi not properly handling an empty shell parameter, which results in changing root's shell instead of the shell of a specified user.

EPSS

Процентиль: 67%
0.00543
Низкий

Связанные уязвимости

ubuntu
почти 19 лет назад

Usermin before 1.220 (20060629) allows remote attackers to read arbitrary files, possibly related to chfn/save.cgi not properly handling an empty shell parameter, which results in changing root's shell instead of the shell of a specified user.

nvd
почти 19 лет назад

Usermin before 1.220 (20060629) allows remote attackers to read arbitrary files, possibly related to chfn/save.cgi not properly handling an empty shell parameter, which results in changing root's shell instead of the shell of a specified user.

debian
почти 19 лет назад

Usermin before 1.220 (20060629) allows remote attackers to read arbitr ...

EPSS

Процентиль: 67%
0.00543
Низкий