Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-79fx-vxcw-m53c

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

relocate_server.php in Coppermine Photo Gallery (CPG) 1.4.2 and 1.4 beta is not removed after installation and does not use authentication, which allows remote attackers to obtain sensitive information, such as database configuration, via a direct request.

relocate_server.php in Coppermine Photo Gallery (CPG) 1.4.2 and 1.4 beta is not removed after installation and does not use authentication, which allows remote attackers to obtain sensitive information, such as database configuration, via a direct request.

EPSS

Процентиль: 69%
0.00604
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
около 20 лет назад

relocate_server.php in Coppermine Photo Gallery (CPG) 1.4.2 and 1.4 beta is not removed after installation and does not use authentication, which allows remote attackers to obtain sensitive information, such as database configuration, via a direct request.

EPSS

Процентиль: 69%
0.00604
Низкий

Дефекты

CWE-287