Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hxh-9q2c-67pv

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

phpSquidPass before 0.2 uses an incomplete regular expression to find a matching username in its database, which allows remote authenticated attackers to effectively delete other usernames via a short username that matches the end of the targeted username.

phpSquidPass before 0.2 uses an incomplete regular expression to find a matching username in its database, which allows remote authenticated attackers to effectively delete other usernames via a short username that matches the end of the targeted username.

EPSS

Процентиль: 40%
0.00184
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

phpSquidPass before 0.2 uses an incomplete regular expression to find a matching username in its database, which allows remote authenticated attackers to effectively delete other usernames via a short username that matches the end of the targeted username.

EPSS

Процентиль: 40%
0.00184
Низкий