Логотип exploitDog
bind:CVE-2007-5654
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-5654

Количество 2

Количество 2

nvd логотип

CVE-2007-5654

больше 18 лет назад

LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files, aka "Mime Type Injection."

CVSS2: 5
EPSS: Средний
github логотип

GHSA-2qqv-pxvf-45vw

почти 4 года назад

LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files, aka "Mime Type Injection."

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2007-5654

LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files, aka "Mime Type Injection."

CVSS2: 5
59%
Средний
больше 18 лет назад
github логотип
GHSA-2qqv-pxvf-45vw

LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files, aka "Mime Type Injection."

59%
Средний
почти 4 года назад

Уязвимостей на страницу