Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4xjg-hhhx-wrf9

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Todd Woolums ASP Download management script 1.03 does not require authentication for setupdownload.asp, which allows remote attackers to gain administrator privileges via a direct request.

Todd Woolums ASP Download management script 1.03 does not require authentication for setupdownload.asp, which allows remote attackers to gain administrator privileges via a direct request.

EPSS

Процентиль: 86%
0.03006
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
почти 17 лет назад

Todd Woolums ASP Download management script 1.03 does not require authentication for setupdownload.asp, which allows remote attackers to gain administrator privileges via a direct request.

EPSS

Процентиль: 86%
0.03006
Низкий

Дефекты

CWE-287