Описание
admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.
Уязвимые конфигурации
Конфигурация 1Версия до 1.0.9 (включая)
cpe:2.3:a:evilsentinel:evilsentinel:*:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.02326
Низкий
5 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
github
больше 4 лет назад
admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.
EPSS
Процентиль: 82%
0.02326
Низкий
5 Medium
CVSS2
Дефекты
CWE-287