Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vgq9-9qjp-4jpj

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The displaycontent function in config.php for Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to gain sensitive information via a blank show parameter, which reveals the installation path in an error message, as demonstrated using index.php.

The displaycontent function in config.php for Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to gain sensitive information via a blank show parameter, which reveals the installation path in an error message, as demonstrated using index.php.

EPSS

Процентиль: 63%
0.00462
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

The displaycontent function in config.php for Just Another Flat file (JAF) CMS 3.0RC allows remote attackers to gain sensitive information via a blank show parameter, which reveals the installation path in an error message, as demonstrated using index.php.

EPSS

Процентиль: 63%
0.00462
Низкий