Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wp63-7hgq-8f4j

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) cactushop6.mdb or (2) cactushop5.mdb.

Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) cactushop6.mdb or (2) cactushop5.mdb.

EPSS

Процентиль: 91%
0.06187
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

Cactushop 6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) cactushop6.mdb or (2) cactushop5.mdb.

EPSS

Процентиль: 91%
0.06187
Низкий