Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-7305

Опубликовано: 10 апр. 2020
Источник: nvd
CVSS3: 5.8
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the Makefile patch file debian/patches/debian-changes-2.1.0b6+dfsg-1 or debian/patches/adds-a-makefile.patch, this can lead to data leakage, information disclosure and potentially remote code execution on the web server. This issue affects all versions of eXtplorer in Ubuntu and Debian

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:extplorer:extplorer:*:*:*:*:*:*:*:*
Версия до 2.1.0 (включая)

Одно из

cpe:2.3:o:canonical:ubuntu_linux:-:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:-:*:*:*:*:*:*:*

EPSS

Процентиль: 78%
0.01166
Низкий

5.8 Medium

CVSS3

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-200
CWE-552

Связанные уязвимости

CVSS3: 5.8
ubuntu
почти 6 лет назад

Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the Makefile patch file debian/patches/debian-changes-2.1.0b6+dfsg-1 or debian/patches/adds-a-makefile.patch, this can lead to data leakage, information disclosure and potentially remote code execution on the web server. This issue affects all versions of eXtplorer in Ubuntu and Debian

CVSS3: 5.8
debian
почти 6 лет назад

Information Exposure vulnerability in eXtplorer makes the /usr/ and /e ...

github
больше 3 лет назад

Information Exposure vulnerability in eXtplorer makes the /usr/ and /etc/extplorer/ system directories world-accessible over HTTP. Introduced in the Makefile patch file debian/patches/debian-changes-2.1.0b6+dfsg-1 or debian/patches/adds-a-makefile.patch, this can lead to data leakage, information disclosure and potentially remote code execution on the web server. This issue affects all versions of eXtplorer in Ubuntu and Debian

EPSS

Процентиль: 78%
0.01166
Низкий

5.8 Medium

CVSS3

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-200
CWE-552