PT-2019-10144 · Php Scripts Mall · Php Scripts Mall Car Rental Script

Publicado

2019-03-20

·

Atualizado

2019-03-25

·

CVE-2018-20647

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: PHP Scripts Mall Car Rental Script version 2.0.8
Description: The issue allows for directory traversal through a direct request for a listing of an image directory, such as an images/ directory.
Recommendations: For PHP Scripts Mall Car Rental Script version 2.0.8, consider restricting access to sensitive directories to prevent unauthorized listing and potential exploitation.

Exploit

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-20647

Produtos afetados

Php Scripts Mall Car Rental Script