Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gx5h-wrvw-rqjf

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SAPID CMS before 1.2.3.03 allows remote attackers to bypass authentication via direct requests to the usr/system files (1) insert_file.php, (2) insert_image.php, (3) insert_link.php, (4) insert_qcfile.php, and (5) edit.php.

SAPID CMS before 1.2.3.03 allows remote attackers to bypass authentication via direct requests to the usr/system files (1) insert_file.php, (2) insert_image.php, (3) insert_link.php, (4) insert_qcfile.php, and (5) edit.php.

EPSS

Процентиль: 76%
0.00978
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
около 20 лет назад

SAPID CMS before 1.2.3.03 allows remote attackers to bypass authentication via direct requests to the usr/system files (1) insert_file.php, (2) insert_image.php, (3) insert_link.php, (4) insert_qcfile.php, and (5) edit.php.

EPSS

Процентиль: 76%
0.00978
Низкий

Дефекты

CWE-287