Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-36072

Опубликовано: 06 сент. 2022
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

SilverwareGames.io is a social network for users to play video games online. In version 1.1.8 and prior, due to an unobvious feature of PHP, hashes generated by built-in functions and starting with the 0e symbols were being handled as zero multiplied with the e number. Therefore, the hash value was equal to 0. The maintainers fixed this in version 1.1.9 by using === instead of == in comparisons where it is possible (e.g. on sign in/sign up handlers).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:silverwaregames:silverwaregames:*:*:*:*:*:*:*:*
Версия до 1.1.9 (исключая)

EPSS

Процентиль: 46%
0.00231
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-597
NVD-CWE-Other

EPSS

Процентиль: 46%
0.00231
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-597
NVD-CWE-Other