Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-3744

Опубликовано: 23 сент. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

HTML Purifier 4.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tests/PHPT/Reporter/SimpleTest.php and certain other files.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

needed

disco

ignored

end of life
eoan

ignored

end of life
esm-apps-legacy/xenial

needed

esm-apps/bionic

needed

esm-apps/focal

needed

esm-apps/jammy

needed

Показывать по

Ссылки на источники

EPSS

Процентиль: 70%
0.01372
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
почти 15 лет назад

HTML Purifier 4.2.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tests/PHPT/Reporter/SimpleTest.php and certain other files.

CVSS3: 5.3
github
больше 4 лет назад

HTML Purifier allows remote attackers to obtain sensitive information

EPSS

Процентиль: 70%
0.01372
Низкий

5 Medium

CVSS2