Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g8fp-55h8-4vmg

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via an aFonts array parameter value that does not correspond to a valid font file, which reveals the installation path in an error message.

images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via an aFonts array parameter value that does not correspond to a valid font file, which reveals the installation path in an error message.

EPSS

Процентиль: 91%
0.06084
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 17 лет назад

images/captcha.php in RavenNuke 2.30 allows remote attackers to obtain sensitive information via an aFonts array parameter value that does not correspond to a valid font file, which reveals the installation path in an error message.

EPSS

Процентиль: 91%
0.06084
Низкий

Дефекты

CWE-200