Description
In DouCo DouPHP v1.5 Release 20190516, remote attackers can view the database backup file via a brute-force guessing approach for data/backup/DyyyymmddThhmmss.sql filenames.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-4158 | In DouCo DouPHP v1.5 Release 20190516, remote attackers can view the database backup file via a brute-force guessing approach for data/backup/DyyyymmddThhmmss.sql filenames. |
References
| Link | Providers |
|---|---|
| https://github.com/srsec/-srsec-/issues/1 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:24:38.552Z
Reserved: 2019-06-02T00:00:00.000Z
Link: CVE-2019-12564
No data.
Status : Modified
Published: 2019-06-03T00:29:00.217
Modified: 2024-11-21T04:23:05.907
Link: CVE-2019-12564
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD