Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p8v7-4ppq-3h6m

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.

eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.

EPSS

Процентиль: 90%
0.05342
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 17 лет назад

eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.

EPSS

Процентиль: 90%
0.05342
Низкий

Дефекты

CWE-200