Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cg48-596p-vf3x

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

app/config/core.php in baserCMS 1.6.15 and earlier does not properly handle installations in shared-hosting environments, which allows remote attackers to hijack sessions by leveraging administrative access to a different domain.

app/config/core.php in baserCMS 1.6.15 and earlier does not properly handle installations in shared-hosting environments, which allows remote attackers to hijack sessions by leveraging administrative access to a different domain.

EPSS

Процентиль: 79%
0.01244
Низкий

Связанные уязвимости

nvd
больше 13 лет назад

app/config/core.php in baserCMS 1.6.15 and earlier does not properly handle installations in shared-hosting environments, which allows remote attackers to hijack sessions by leveraging administrative access to a different domain.

EPSS

Процентиль: 79%
0.01244
Низкий