Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q8p7-6fhh-3h44

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insensitive manner, which allows remote attackers to read .DS_Store files and files beginning with ".ht" using alternate capitalization.

Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insensitive manner, which allows remote attackers to read .DS_Store files and files beginning with ".ht" using alternate capitalization.

EPSS

Процентиль: 83%
0.01905
Низкий

7.5 High

CVSS3

Дефекты

CWE-178

Связанные уязвимости

CVSS3: 7.5
nvd
около 21 года назад

Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insensitive manner, which allows remote attackers to read .DS_Store files and files beginning with ".ht" using alternate capitalization.

EPSS

Процентиль: 83%
0.01905
Низкий

7.5 High

CVSS3

Дефекты

CWE-178