Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-99qg-j7h7-rpcr

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt.

WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt.

EPSS

Процентиль: 88%
0.04324
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 21 года назад

WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain authentication information via a direct request to (1) !pwds.txt and (2) !nicks.txt.

EPSS

Процентиль: 88%
0.04324
Низкий

Дефекты

CWE-200