Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-6537

Опубликовано: 30 мар. 2009
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:lightneasy:lightneasy:1.2:*:no_database:*:*:*:*:*

EPSS

Процентиль: 87%
0.03161
Низкий

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

github
больше 3 лет назад

LightNEasy/lightneasy.php in LightNEasy No database version 1.2 allows remote attackers to obtain the hash of the administrator password via the setup "do" action to LightNEasy.php, which is cleared from $_GET but later accessed using $_REQUEST.

EPSS

Процентиль: 87%
0.03161
Низкий

5 Medium

CVSS2

Дефекты

CWE-200