Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v9g4-4g73-5g38

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Old Charts implementation in Bugzilla 2.12 through 3.2.8, 3.4.8, 3.6.2, 3.7.3, and 4.1 creates graph files with predictable names in graphs/, which allows remote attackers to obtain sensitive information via a modified URL.

The Old Charts implementation in Bugzilla 2.12 through 3.2.8, 3.4.8, 3.6.2, 3.7.3, and 4.1 creates graph files with predictable names in graphs/, which allows remote attackers to obtain sensitive information via a modified URL.

EPSS

Процентиль: 74%
0.00846
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 15 лет назад

The Old Charts implementation in Bugzilla 2.12 through 3.2.8, 3.4.8, 3.6.2, 3.7.3, and 4.1 creates graph files with predictable names in graphs/, which allows remote attackers to obtain sensitive information via a modified URL.

nvd
больше 15 лет назад

The Old Charts implementation in Bugzilla 2.12 through 3.2.8, 3.4.8, 3.6.2, 3.7.3, and 4.1 creates graph files with predictable names in graphs/, which allows remote attackers to obtain sensitive information via a modified URL.

debian
больше 15 лет назад

The Old Charts implementation in Bugzilla 2.12 through 3.2.8, 3.4.8, 3 ...

EPSS

Процентиль: 74%
0.00846
Низкий

Дефекты

CWE-200