Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m74v-f72c-hfvv

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

phpBB 2.0 through 2.0.3 generates names for uploaded avatar files with the hex-encoded IP address of the client system, which allows remote attackers to obtain client IP addresses.

phpBB 2.0 through 2.0.3 generates names for uploaded avatar files with the hex-encoded IP address of the client system, which allows remote attackers to obtain client IP addresses.

EPSS

Процентиль: 63%
0.00455
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 22 лет назад

phpBB 2.0 through 2.0.3 generates names for uploaded avatar files with the hex-encoded IP address of the client system, which allows remote attackers to obtain client IP addresses.

EPSS

Процентиль: 63%
0.00455
Низкий

Дефекты

CWE-200