Логотип exploitDog
bind:CVE-2009-0674
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-0674

Количество 2

Количество 2

nvd логотип

CVE-2009-0674

почти 17 лет назад

images/captcha.php in Raven Web Services RavenNuke 2.30, when register_globals and display_errors are enabled, allows remote attackers to determine the existence of local files by sending requests with full pathnames in the aFonts array parameter, and then observing the error messages, which differ between existing and nonexistent pathnames.

CVSS2: 6
EPSS: Низкий
github логотип

GHSA-3w86-j9mv-8fpr

почти 4 года назад

images/captcha.php in Raven Web Services RavenNuke 2.30, when register_globals and display_errors are enabled, allows remote attackers to determine the existence of local files by sending requests with full pathnames in the aFonts array parameter, and then observing the error messages, which differ between existing and nonexistent pathnames.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2009-0674

images/captcha.php in Raven Web Services RavenNuke 2.30, when register_globals and display_errors are enabled, allows remote attackers to determine the existence of local files by sending requests with full pathnames in the aFonts array parameter, and then observing the error messages, which differ between existing and nonexistent pathnames.

CVSS2: 6
7%
Низкий
почти 17 лет назад
github логотип
GHSA-3w86-j9mv-8fpr

images/captcha.php in Raven Web Services RavenNuke 2.30, when register_globals and display_errors are enabled, allows remote attackers to determine the existence of local files by sending requests with full pathnames in the aFonts array parameter, and then observing the error messages, which differ between existing and nonexistent pathnames.

7%
Низкий
почти 4 года назад

Уязвимостей на страницу