Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5576-9r4v-7ffw

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data directory by inserting a "/" in front of the target filename in the "file" parameter.

loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data directory by inserting a "/" in front of the target filename in the "file" parameter.

EPSS

Процентиль: 88%
0.04092
Низкий

Связанные уязвимости

nvd
больше 24 лет назад

loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data directory by inserting a "/" in front of the target filename in the "file" parameter.

EPSS

Процентиль: 88%
0.04092
Низкий