Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pwhp-fv6f-mjv6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information via a direct request to the backup file in administration/db_backups/.

PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information via a direct request to the backup file in administration/db_backups/.

EPSS

Процентиль: 95%
0.18032
Средний

Связанные уязвимости

nvd
почти 12 лет назад

PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information via a direct request to the backup file in administration/db_backups/.

EPSS

Процентиль: 95%
0.18032
Средний