Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-2577

Опубликовано: 31 дек. 2004
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The acl_check function in phpGroupWare 0.9.16RC2 always returns True, even when mkdir does not behave as expected, which could allow remote attackers to obtain sensitive information via WebDAV from users' home directories that lack .htaccess files, and possibly has other unknown impacts.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:phpgroupware:phpgroupware:0.9.16rc1:*:*:*:*:*:*:*
cpe:2.3:a:phpgroupware:phpgroupware:0.9.16rc2:*:*:*:*:*:*:*

EPSS

Процентиль: 56%
0.00346
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

debian
больше 20 лет назад

The acl_check function in phpGroupWare 0.9.16RC2 always returns True, ...

github
больше 3 лет назад

The acl_check function in phpGroupWare 0.9.16RC2 always returns True, even when mkdir does not behave as expected, which could allow remote attackers to obtain sensitive information via WebDAV from users' home directories that lack .htaccess files, and possibly has other unknown impacts.

EPSS

Процентиль: 56%
0.00346
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other