Описание
An issue in DirectAdmin v1.680 allows unauthorized attackers to manipulate the page layout and replace the legitimate login interface with arbitrary attacker-controlled content via supplying a crafted GET request.
Ссылки
- ExploitThird Party Advisory
- Product
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:directadmin:directadmin:1.680:*:*:*:*:*:*:*
EPSS
Процентиль: 20%
0.00066
Низкий
8.2 High
CVSS3
Дефекты
CWE-598
Связанные уязвимости
CVSS3: 8.2
github
4 месяца назад
An issue in DirectAdmin v1.680 allows unauthorized attackers to manipulate the page layout and replace the legitimate login interface with arbitrary attacker-controlled content via supplying a crafted GET request.
EPSS
Процентиль: 20%
0.00066
Низкий
8.2 High
CVSS3
Дефекты
CWE-598