Описание
MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt).
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
- ExploitVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.5_patch_1 (включая)
cpe:2.3:a:multitheftauto:multitheftauto:*:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.02307
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt).
EPSS
Процентиль: 82%
0.02307
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other