Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8j72-655g-xf38

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

2z project 0.9.6.1 allows remote attackers to obtain sensitive information via (1) a request to index.php with an invalid template or (2) a request to the default URI with certain year and month parameters, which reveals the path in various error messages.

2z project 0.9.6.1 allows remote attackers to obtain sensitive information via (1) a request to index.php with an invalid template or (2) a request to the default URI with certain year and month parameters, which reveals the path in various error messages.

EPSS

Процентиль: 54%
0.00309
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 18 лет назад

2z project 0.9.6.1 allows remote attackers to obtain sensitive information via (1) a request to index.php with an invalid template or (2) a request to the default URI with certain year and month parameters, which reveals the path in various error messages.

EPSS

Процентиль: 54%
0.00309
Низкий

Дефекты

CWE-200