Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ffmc-h26p-q9qj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The b_system_comments_show function in htdocs/modules/system/blocks/system_blocks.php in XOOPS before 2.0.18 does not check permissions, which allows remote attackers to read the comments in restricted modules.

The b_system_comments_show function in htdocs/modules/system/blocks/system_blocks.php in XOOPS before 2.0.18 does not check permissions, which allows remote attackers to read the comments in restricted modules.

EPSS

Процентиль: 46%
0.00234
Низкий

Связанные уязвимости

nvd
около 18 лет назад

The b_system_comments_show function in htdocs/modules/system/blocks/system_blocks.php in XOOPS before 2.0.18 does not check permissions, which allows remote attackers to read the comments in restricted modules.

EPSS

Процентиль: 46%
0.00234
Низкий