Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r8rv-9vg6-2rcm

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

hyBook Guestbook Script stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing a password via a direct request for hyBook.mdb.

hyBook Guestbook Script stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing a password via a direct request for hyBook.mdb.

EPSS

Процентиль: 49%
0.0026
Низкий

Связанные уязвимости

nvd
около 17 лет назад

hyBook Guestbook Script stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing a password via a direct request for hyBook.mdb.

EPSS

Процентиль: 49%
0.0026
Низкий