Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qp8q-fp29-hx6f

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.

Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.

EPSS

Процентиль: 87%
0.03263
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.

EPSS

Процентиль: 87%
0.03263
Низкий