Описание
PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request.
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:php_heaven:phpmychat:0.14.5:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.02837
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
почти 4 года назад
PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request.
EPSS
Процентиль: 86%
0.02837
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-264