Логотип exploitDog
bind:CVE-2020-24381
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-24381

Количество 2

Количество 2

nvd логотип

CVE-2020-24381

больше 5 лет назад

GUnet Open eClass Platform (aka openeclass) before 3.11 might allow remote attackers to read students' submitted assessments because it does not ensure that the web server blocks directory listings, and the data directory is inside the web root by default.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-5jjh-v59v-w68q

больше 3 лет назад

** DISPUTED ** GUnet Open eClass Platform (aka openeclass) through 3.9.2 might allow remote attackers to read students' submitted assessments because it does not ensure that the web server blocks directory listings. NOTE: this is disputed because it only affects misconfigured installations.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-24381

GUnet Open eClass Platform (aka openeclass) before 3.11 might allow remote attackers to read students' submitted assessments because it does not ensure that the web server blocks directory listings, and the data directory is inside the web root by default.

CVSS3: 7.5
0%
Низкий
больше 5 лет назад
github логотип
GHSA-5jjh-v59v-w68q

** DISPUTED ** GUnet Open eClass Platform (aka openeclass) through 3.9.2 might allow remote attackers to read students' submitted assessments because it does not ensure that the web server blocks directory listings. NOTE: this is disputed because it only affects misconfigured installations.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу