Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j5rg-pxmp-mhjw

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

PHPMailList 1.8.0 stores sensitive information under the web document root iwth insufficient access control, which allows remote attackers to obtain email addresses of subscribers, configuration information, and the admin username and password via direct requests to (1) list.dat or (2) ml_config.dat.

PHPMailList 1.8.0 stores sensitive information under the web document root iwth insufficient access control, which allows remote attackers to obtain email addresses of subscribers, configuration information, and the admin username and password via direct requests to (1) list.dat or (2) ml_config.dat.

EPSS

Процентиль: 57%
0.00357
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

PHPMailList 1.8.0 stores sensitive information under the web document root iwth insufficient access control, which allows remote attackers to obtain email addresses of subscribers, configuration information, and the admin username and password via direct requests to (1) list.dat or (2) ml_config.dat.

EPSS

Процентиль: 57%
0.00357
Низкий