Логотип exploitDog
bind:CVE-2020-23352
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-23352

Количество 2

Количество 2

nvd логотип

CVE-2020-23352

около 5 лет назад

Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to bypass authentication. zb_user/plugin/passwordvisit/include.php:passwordvisit_input_password() uses loose comparison to authenticate, which can be bypassed via magic hash values.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-hcfw-jhvg-6wgg

больше 3 лет назад

Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to bypass authentication. zb_user/plugin/passwordvisit/include.php:passwordvisit_input_password() uses loose comparison to authenticate, which can be bypassed via magic hash values.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-23352

Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to bypass authentication. zb_user/plugin/passwordvisit/include.php:passwordvisit_input_password() uses loose comparison to authenticate, which can be bypassed via magic hash values.

CVSS3: 7.5
0%
Низкий
около 5 лет назад
github логотип
GHSA-hcfw-jhvg-6wgg

Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to bypass authentication. zb_user/plugin/passwordvisit/include.php:passwordvisit_input_password() uses loose comparison to authenticate, which can be bypassed via magic hash values.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу