Описание
imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document that lists folders and their permissions.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
- Exploit
- Vendor Advisory
- ExploitVendor Advisory
- ExploitVendor Advisory
- Exploit
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:imagevue:imagevue:0.16.1:*:*:*:*:*:*:*
EPSS
Процентиль: 88%
0.03699
Низкий
5 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
почти 4 года назад
imageVue 16.1 allows remote attackers to obtain folder permission settings via a direct request to dir.php, which returns an XML document that lists folders and their permissions.
EPSS
Процентиль: 88%
0.03699
Низкий
5 Medium
CVSS2
Дефекты
CWE-264