Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-2229

Опубликовано: 12 июл. 2005
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:blog_torrent:blog_torrent:*:*:*:*:*:*:*:*
Версия до 0.92 (включая)

EPSS

Процентиль: 87%
0.03263
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.

EPSS

Процентиль: 87%
0.03263
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other