Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5c9q-377h-68h3

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path via an invalid show parameter referencing a non-existent file, which reveals the path in the resulting error message. NOTE: this issue might be resultant from a more serious issue such as directory traversal.

index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path via an invalid show parameter referencing a non-existent file, which reveals the path in the resulting error message. NOTE: this issue might be resultant from a more serious issue such as directory traversal.

EPSS

Процентиль: 82%
0.01752
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 19 лет назад

index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path via an invalid show parameter referencing a non-existent file, which reveals the path in the resulting error message. NOTE: this issue might be resultant from a more serious issue such as directory traversal.

EPSS

Процентиль: 82%
0.01752
Низкий

Дефекты

CWE-200