Логотип exploitDog
bind:CVE-2007-0620
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-0620

Количество 2

Количество 2

nvd логотип

CVE-2007-0620

около 19 лет назад

download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root with certain extensions, including .php, via a relative pathname in the fname parameter, as demonstrated by downloading config.php.

CVSS2: 5
EPSS: Средний
github логотип

GHSA-jwm7-gvgf-58g7

почти 4 года назад

download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root with certain extensions, including .php, via a relative pathname in the fname parameter, as demonstrated by downloading config.php.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2007-0620

download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root with certain extensions, including .php, via a relative pathname in the fname parameter, as demonstrated by downloading config.php.

CVSS2: 5
14%
Средний
около 19 лет назад
github логотип
GHSA-jwm7-gvgf-58g7

download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root with certain extensions, including .php, via a relative pathname in the fname parameter, as demonstrated by downloading config.php.

14%
Средний
почти 4 года назад

Уязвимостей на страницу