Описание
Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, which allows remote attackers to view account names and MD5 password hashes.
Ссылки
- ExploitVendor Advisory
- Vendor Advisory
- URL Repurposed
- ExploitVendor Advisory
- Vendor Advisory
- URL Repurposed
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:noah_medling:rcblog:1.03:*:*:*:*:*:*:*
EPSS
Процентиль: 71%
0.00675
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, which allows remote attackers to view account names and MD5 password hashes.
EPSS
Процентиль: 71%
0.00675
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other