Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-0407

Опубликовано: 29 янв. 2008
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whether authentication succeeded, which might make it more difficult for an administrator to determine who made a remote request.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hfs:http_file_server:*:*:*:*:*:*:*:*
Версия до 2.2b (включая)

EPSS

Процентиль: 63%
0.0044
Низкий

5 Medium

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
почти 4 года назад

HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whether authentication succeeded, which might make it more difficult for an administrator to determine who made a remote request.

EPSS

Процентиль: 63%
0.0044
Низкий

5 Medium

CVSS2

Дефекты

CWE-287