Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-785x-m7p9-vff9

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file.

Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file.

EPSS

Процентиль: 15%
0.00048
Низкий

Дефекты

CWE-200

Связанные уязвимости

redhat
больше 10 лет назад

Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file.

nvd
больше 10 лет назад

Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file.

EPSS

Процентиль: 15%
0.00048
Низкий

Дефекты

CWE-200