Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pcv2-p6r7-x7x6

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

view.php in KnowledgeTree Open Source 3.0.3 and earlier allows remote attackers to obtain the full installation path via a crafted fDocumentId parameter, which displays the path in the resulting error message. NOTE: this might be resultant from another vulnerability, since this vector also produces XSS.

view.php in KnowledgeTree Open Source 3.0.3 and earlier allows remote attackers to obtain the full installation path via a crafted fDocumentId parameter, which displays the path in the resulting error message. NOTE: this might be resultant from another vulnerability, since this vector also produces XSS.

EPSS

Процентиль: 68%
0.00627
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

view.php in KnowledgeTree Open Source 3.0.3 and earlier allows remote attackers to obtain the full installation path via a crafted fDocumentId parameter, which displays the path in the resulting error message. NOTE: this might be resultant from another vulnerability, since this vector also produces XSS.

debian
больше 19 лет назад

view.php in KnowledgeTree Open Source 3.0.3 and earlier allows remote ...

EPSS

Процентиль: 68%
0.00627
Низкий