Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gm38-v67v-v4jx

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

index.php in AdPeeps 8.5d1 allows remote attackers to obtain sensitive information via (1) a view_adrates action with an invalid uid parameter, which reveals the installation path in an error message; or (2) an adminlogin action with a crafted uid parameter, which reveals the version number.

index.php in AdPeeps 8.5d1 allows remote attackers to obtain sensitive information via (1) a view_adrates action with an invalid uid parameter, which reveals the installation path in an error message; or (2) an adminlogin action with a crafted uid parameter, which reveals the version number.

EPSS

Процентиль: 55%
0.00319
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 15 лет назад

index.php in AdPeeps 8.5d1 allows remote attackers to obtain sensitive information via (1) a view_adrates action with an invalid uid parameter, which reveals the installation path in an error message; or (2) an adminlogin action with a crafted uid parameter, which reveals the version number.

EPSS

Процентиль: 55%
0.00319
Низкий

Дефекты

CWE-200