Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9xc3-v42x-896q

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

download.php in Joonas Viljanen JV2 Folder Gallery allows remote attackers to read sensitive files via a relative pathname in the file parameter, as demonstrated by config/gallerysetup.php. NOTE: this issue might be resultant from a directory traversal vulnerability.

download.php in Joonas Viljanen JV2 Folder Gallery allows remote attackers to read sensitive files via a relative pathname in the file parameter, as demonstrated by config/gallerysetup.php. NOTE: this issue might be resultant from a directory traversal vulnerability.

EPSS

Процентиль: 91%
0.07032
Низкий

Связанные уязвимости

nvd
почти 19 лет назад

download.php in Joonas Viljanen JV2 Folder Gallery allows remote attackers to read sensitive files via a relative pathname in the file parameter, as demonstrated by config/gallerysetup.php. NOTE: this issue might be resultant from a directory traversal vulnerability.

EPSS

Процентиль: 91%
0.07032
Низкий