Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h2hv-gpr9-gq4m

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

classes/Url.php in Justin Hagstrom AutoIndex PHP Script before 2.2.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via a %00 sequence in the dir parameter to index.php, which triggers an erroneous "recursive calculation."

classes/Url.php in Justin Hagstrom AutoIndex PHP Script before 2.2.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via a %00 sequence in the dir parameter to index.php, which triggers an erroneous "recursive calculation."

EPSS

Процентиль: 95%
0.1735
Средний

Дефекты

CWE-20

Связанные уязвимости

nvd
около 18 лет назад

classes/Url.php in Justin Hagstrom AutoIndex PHP Script before 2.2.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via a %00 sequence in the dir parameter to index.php, which triggers an erroneous "recursive calculation."

EPSS

Процентиль: 95%
0.1735
Средний

Дефекты

CWE-20