Lucene search

K
prionPRIOn knowledge basePRION:CVE-2007-5129
HistorySep 27, 2007 - 7:17 p.m.

Improper access control

2007-09-2719:17:00
PRIOn knowledge base
www.prio-n.com
1

7 High

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

83.1%

SimpGB 1.46.02 stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) obtain sensitive configuration information via a direct request for admin/cfginfo.php; and (2) download arbitrary .inc files via a direct request, as demonstrated by admin/includes/dbtables.inc.

CPENameOperatorVersion
simpgbeq1.46.02

7 High

AI Score

Confidence

Low

0.009 Low

EPSS

Percentile

83.1%

Related for PRION:CVE-2007-5129