Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gf59-j48p-85vg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the application by triggering an error message, such as by entering multiple ../ (dot dot slash) in the archive parameter.

index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the application by triggering an error message, such as by entering multiple ../ (dot dot slash) in the archive parameter.

EPSS

Процентиль: 57%
0.00346
Низкий

Связанные уязвимости

nvd
около 20 лет назад

index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the application by triggering an error message, such as by entering multiple ../ (dot dot slash) in the archive parameter.

EPSS

Процентиль: 57%
0.00346
Низкий