Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-0445

Опубликовано: 26 янв. 2006
Источник: nvd
CVSS2: 4
EPSS Низкий

Описание

index.php in Phpclanwebsite 1.23.1 allows remote authenticated users to obtain the installation path by specifying an invalid file name to the uploader page, as demonstrated by "", which will display the full path of uploader.php. NOTE: this might be the result of a file inclusion vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpclanwebsite:phpclanwebsite:1.23.1:*:*:*:*:*:*:*

EPSS

Процентиль: 65%
0.01194
Низкий

4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 4 лет назад

index.php in Phpclanwebsite 1.23.1 allows remote authenticated users to obtain the installation path by specifying an invalid file name to the uploader page, as demonstrated by "\", which will display the full path of uploader.php. NOTE: this might be the result of a file inclusion vulnerability.

EPSS

Процентиль: 65%
0.01194
Низкий

4 Medium

CVSS2

Дефекты

NVD-CWE-Other