Логотип exploitDog
bind:CVE-2007-6470
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-6470

Количество 2

Количество 2

nvd логотип

CVE-2007-6470

около 18 лет назад

phpRPG 0.8 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read session ID values in files under tmp/, and then hijack sessions via PHPSESSID cookies.

CVSS2: 6.4
EPSS: Низкий
github логотип

GHSA-pq5g-gg66-p9cr

почти 4 года назад

phpRPG 0.8 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read session ID values in files under tmp/, and then hijack sessions via PHPSESSID cookies.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2007-6470

phpRPG 0.8 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read session ID values in files under tmp/, and then hijack sessions via PHPSESSID cookies.

CVSS2: 6.4
3%
Низкий
около 18 лет назад
github логотип
GHSA-pq5g-gg66-p9cr

phpRPG 0.8 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read session ID values in files under tmp/, and then hijack sessions via PHPSESSID cookies.

3%
Низкий
почти 4 года назад

Уязвимостей на страницу