Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f22v-2rhv-9jpg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

lblog stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for a certain file in admin/db/newFolder/.

lblog stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for a certain file in admin/db/newFolder/.

EPSS

Процентиль: 70%
0.00622
Низкий

Связанные уязвимости

nvd
около 19 лет назад

lblog stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for a certain file in admin/db/newFolder/.

EPSS

Процентиль: 70%
0.00622
Низкий