Описание
Magus Perde Clever Copy 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to view the database username and password via a direct request for connect.inc.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
- Exploit
- ExploitVendor Advisory
- ExploitVendor Advisory
- Exploit
Уязвимые конфигурации
Конфигурация 1Версия до 3.0 (включая)
Одно из
cpe:2.3:a:clever_copy:clever_copy:*:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:2.0:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:2.0a:*:*:*:*:*:*:*
cpe:2.3:a:clever_copy:clever_copy:23.0:*:*:*:*:*:*:*
EPSS
Процентиль: 91%
0.06194
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Magus Perde Clever Copy 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to view the database username and password via a direct request for connect.inc.
EPSS
Процентиль: 91%
0.06194
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other