Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-6126

Опубликовано: 11 янв. 2019
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

The Admin Panel of PHP Scripts Mall Advance Peer to Peer MLM Script v1.7.0 allows remote attackers to bypass intended access restrictions by directly navigating to admin/dashboard.php or admin/user.php, as demonstrated by disclosure of information about users and staff.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:advance_peer_to_peer_mlm_script_project:advance_peer_to_peer_mlm_script:1.7.0:*:*:*:*:*:*:*

EPSS

Процентиль: 48%
0.0025
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-425

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

The Admin Panel of PHP Scripts Mall Advance Peer to Peer MLM Script v1.7.0 allows remote attackers to bypass intended access restrictions by directly navigating to admin/dashboard.php or admin/user.php, as demonstrated by disclosure of information about users and staff.

EPSS

Процентиль: 48%
0.0025
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-425