Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vxw6-rgvr-442h

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An issue was discovered on LG GAMP-7100, GAPM-7200, and GAPM-8000 routers. An unauthenticated user can read a log file via an HTTP request containing its full pathname, such as http://192.168.0.1/var/gapm7100_${today's_date}.log for reading a filename such as gapm7100_190101.log.

An issue was discovered on LG GAMP-7100, GAPM-7200, and GAPM-8000 routers. An unauthenticated user can read a log file via an HTTP request containing its full pathname, such as http://192.168.0.1/var/gapm7100_${today's_date}.log for reading a filename such as gapm7100_190101.log.

EPSS

Процентиль: 74%
0.00805
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-306

Связанные уязвимости

CVSS3: 7.5
nvd
больше 6 лет назад

An issue was discovered on LG GAMP-7100, GAPM-7200, and GAPM-8000 routers. An unauthenticated user can read a log file via an HTTP request containing its full pathname, such as http://192.168.0.1/var/gapm7100_${today's_date}.log for reading a filename such as gapm7100_190101.log.

EPSS

Процентиль: 74%
0.00805
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-306