Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-673q-v95c-q7mf

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.

common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.

EPSS

Процентиль: 76%
0.01015
Низкий

Связанные уязвимости

nvd
больше 24 лет назад

common.inc.php in phpWebLog 0.4.2 does not properly initialize the $CONF array, which inadvertently sets the password to a single character, allowing remote attackers to easily guess the SiteKey and gain administrative privileges to phpWebLog.

EPSS

Процентиль: 76%
0.01015
Низкий