Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wgp3-cjp7-pqw2

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

EMembersPro 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for users.mdb.

EMembersPro 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for users.mdb.

EPSS

Процентиль: 74%
0.00841
Низкий

Связанные уязвимости

nvd
около 19 лет назад

EMembersPro 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for users.mdb.

EPSS

Процентиль: 74%
0.00841
Низкий