Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xfxm-p3px-phfr

Опубликовано: 11 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 6.5

Описание

BloodX 1.0 contains an authentication bypass vulnerability in login.php that allows attackers to access the dashboard without valid credentials. Attackers can exploit the vulnerability by sending a crafted payload with '=''or' parameters to bypass login authentication and gain unauthorized access.

BloodX 1.0 contains an authentication bypass vulnerability in login.php that allows attackers to access the dashboard without valid credentials. Attackers can exploit the vulnerability by sending a crafted payload with '=''or' parameters to bypass login authentication and gain unauthorized access.

EPSS

Процентиль: 23%
0.00301
Низкий

6.9 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-288

Связанные уязвимости

CVSS3: 6.5
nvd
6 месяцев назад

BloodX 1.0 contains an authentication bypass vulnerability in login.php that allows attackers to access the dashboard without valid credentials. Attackers can exploit the vulnerability by sending a crafted payload with '=''or' parameters to bypass login authentication and gain unauthorized access.

EPSS

Процентиль: 23%
0.00301
Низкий

6.9 Medium

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-288