Описание
Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, which allows remote attackers to view account names and MD5 password hashes.
Ссылки
- ExploitVendor Advisory
- Vendor Advisory
- URL Repurposed
- ExploitVendor Advisory
- Vendor Advisory
- URL Repurposed
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:noah_medling:rcblog:1.03:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.01762
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 4 лет назад
Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, which allows remote attackers to view account names and MD5 password hashes.
EPSS
Процентиль: 76%
0.01762
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other