Описание
MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt).
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
- ExploitVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.5_patch_1 (включая)
cpe:2.3:a:multitheftauto:multitheftauto:*:*:*:*:*:*:*:*
EPSS
Процентиль: 90%
0.05464
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt).
EPSS
Процентиль: 90%
0.05464
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other