Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hp9f-9w77-qm8f

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The search function in phpBB 2.x provides a search_id value that leaks the state of PHP's PRNG, which allows remote attackers to obtain potentially sensitive information, as demonstrated by a cross-application attack against WordPress, a different vulnerability than CVE-2006-0632.

The search function in phpBB 2.x provides a search_id value that leaks the state of PHP's PRNG, which allows remote attackers to obtain potentially sensitive information, as demonstrated by a cross-application attack against WordPress, a different vulnerability than CVE-2006-0632.

EPSS

Процентиль: 44%
0.00221
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 17 лет назад

The search function in phpBB 2.x provides a search_id value that leaks the state of PHP's PRNG, which allows remote attackers to obtain potentially sensitive information, as demonstrated by a cross-application attack against WordPress, a different vulnerability than CVE-2006-0632.

nvd
больше 17 лет назад

The search function in phpBB 2.x provides a search_id value that leaks the state of PHP's PRNG, which allows remote attackers to obtain potentially sensitive information, as demonstrated by a cross-application attack against WordPress, a different vulnerability than CVE-2006-0632.

debian
больше 17 лет назад

The search function in phpBB 2.x provides a search_id value that leaks ...

EPSS

Процентиль: 44%
0.00221
Низкий

Дефекты

CWE-200