Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8p79-497p-9qx5

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing usernames and encrypted passwords via a direct request for db/users.db.

Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing usernames and encrypted passwords via a direct request for db/users.db.

EPSS

Процентиль: 54%
0.00316
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing usernames and encrypted passwords via a direct request for db/users.db.

EPSS

Процентиль: 54%
0.00316
Низкий