Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qc4h-hwgp-rx7q

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SimpNews 2.41.03 on Windows, when PHP before 5.0.0 is used, allows remote attackers to obtain sensitive information via an certain link_date parameter to events.php, which reveals the path in an error message due to an unsupported argument type for the mktime function on Windows.

SimpNews 2.41.03 on Windows, when PHP before 5.0.0 is used, allows remote attackers to obtain sensitive information via an certain link_date parameter to events.php, which reveals the path in an error message due to an unsupported argument type for the mktime function on Windows.

EPSS

Процентиль: 57%
0.00348
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 17 лет назад

SimpNews 2.41.03 on Windows, when PHP before 5.0.0 is used, allows remote attackers to obtain sensitive information via an certain link_date parameter to events.php, which reveals the path in an error message due to an unsupported argument type for the mktime function on Windows.

EPSS

Процентиль: 57%
0.00348
Низкий

Дефекты

CWE-20