Логотип exploitDog
bind:CVE-2005-3766
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2005-3766

Количество 2

Количество 2

nvd логотип

CVE-2005-3766

около 20 лет назад

Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-v87m-2q74-9xw3

почти 4 года назад

Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2005-3766

Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.

CVSS2: 5
0%
Низкий
около 20 лет назад
github логотип
GHSA-v87m-2q74-9xw3

Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу