Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xvfv-x947-hhgf

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

TeeKai Forum 1.2 uses weak encryption of web usage statistics in data/member_log.txt, which is stored under the web document root with insufficient access control, which allows remote attackers to identify IP's visiting the site by dividing each octet by the MD5 hash of '20'.

TeeKai Forum 1.2 uses weak encryption of web usage statistics in data/member_log.txt, which is stored under the web document root with insufficient access control, which allows remote attackers to identify IP's visiting the site by dividing each octet by the MD5 hash of '20'.

EPSS

Процентиль: 53%
0.00307
Низкий

Связанные уязвимости

nvd
около 23 лет назад

TeeKai Forum 1.2 uses weak encryption of web usage statistics in data/member_log.txt, which is stored under the web document root with insufficient access control, which allows remote attackers to identify IP's visiting the site by dividing each octet by the MD5 hash of '20'.

EPSS

Процентиль: 53%
0.00307
Низкий