Описание
Directory traversal vulnerability in upgrade.php in phpAdsNew 2.0.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the phpAds_config[language] parameter. NOTE: this issue could not be reproduced by a third party
Ссылки
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:phpadsnew:phpadsnew:2.0.8:*:*:*:*:*:*:*
EPSS
Процентиль: 56%
0.00335
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
** DISPUTED ** Directory traversal vulnerability in upgrade.php in phpAdsNew 2.0.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the phpAds_config[language] parameter. NOTE: this issue could not be reproduced by a third party.
EPSS
Процентиль: 56%
0.00335
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other