Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6jwx-qcgg-f7xj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Absolute path traversal vulnerability in dload.php in the my_gallery 2.3 plugin for e107 allows remote attackers to obtain sensitive information via a full pathname in the file parameter. NOTE: some of these details are obtained from third party information.

Absolute path traversal vulnerability in dload.php in the my_gallery 2.3 plugin for e107 allows remote attackers to obtain sensitive information via a full pathname in the file parameter. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 89%
0.04992
Низкий

Дефекты

CWE-20
CWE-22

Связанные уязвимости

nvd
почти 18 лет назад

Absolute path traversal vulnerability in dload.php in the my_gallery 2.3 plugin for e107 allows remote attackers to obtain sensitive information via a full pathname in the file parameter. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 89%
0.04992
Низкий

Дефекты

CWE-20
CWE-22