Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p828-pr7c-2c7c

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others.

Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others.

EPSS

Процентиль: 79%
0.01281
Низкий

Связанные уязвимости

nvd
около 21 года назад

Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others.

EPSS

Процентиль: 79%
0.01281
Низкий