Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w7r9-gc37-g6x5

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.

CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.

EPSS

Процентиль: 93%
0.09876
Низкий

Связанные уязвимости

nvd
почти 21 год назад

CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.

EPSS

Процентиль: 93%
0.09876
Низкий