Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9v8q-h77v-w42w

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

FunkBoard 0.66CF, and possibly earlier versions, does not properly restrict access to the (1) admin/mysql_install.php and (2) admin/pg_install.php scripts, which allows attackers to obtain the database username and password or inject arbitrary PHP code into info.php.

FunkBoard 0.66CF, and possibly earlier versions, does not properly restrict access to the (1) admin/mysql_install.php and (2) admin/pg_install.php scripts, which allows attackers to obtain the database username and password or inject arbitrary PHP code into info.php.

EPSS

Процентиль: 59%
0.00376
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

FunkBoard 0.66CF, and possibly earlier versions, does not properly restrict access to the (1) admin/mysql_install.php and (2) admin/pg_install.php scripts, which allows attackers to obtain the database username and password or inject arbitrary PHP code into info.php.

EPSS

Процентиль: 59%
0.00376
Низкий