Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p7c6-3vqx-r8qj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensitive files via a request containing a trailing (1) space or (2) dot, which is not properly handled by XSP.

StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensitive files via a request containing a trailing (1) space or (2) dot, which is not properly handled by XSP.

EPSS

Процентиль: 55%
0.00329
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 18 лет назад

StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensitive files via a request containing a trailing (1) space or (2) dot, which is not properly handled by XSP.

debian
около 18 лет назад

StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when runnin ...

EPSS

Процентиль: 55%
0.00329
Низкий

Дефекты

CWE-200