Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8m4h-rf59-87cm

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Eazy Cart stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a customer database via a direct request for admin/config/customer.dat. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

Eazy Cart stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a customer database via a direct request for admin/config/customer.dat. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

EPSS

Процентиль: 67%
0.00544
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

Eazy Cart stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a customer database via a direct request for admin/config/customer.dat. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

EPSS

Процентиль: 67%
0.00544
Низкий