Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rwq7-fqhw-gq6p

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The (1) updateuser.php and (2) forums_prune.php scripts in PHP-Fusion 4.00 allow remote attackers to obtain sensitive information via a direct HTTP request, which reveals the installation path in an error message.

The (1) updateuser.php and (2) forums_prune.php scripts in PHP-Fusion 4.00 allow remote attackers to obtain sensitive information via a direct HTTP request, which reveals the installation path in an error message.

EPSS

Процентиль: 57%
0.00346
Низкий

Связанные уязвимости

nvd
около 21 года назад

The (1) updateuser.php and (2) forums_prune.php scripts in PHP-Fusion 4.00 allow remote attackers to obtain sensitive information via a direct HTTP request, which reveals the installation path in an error message.

EPSS

Процентиль: 57%
0.00346
Низкий