CVSSv4: NA |
CVSSv3: NA |
CVSSv2: 5 |
VMScore: 600 |
EPSS: 0.00396 |
KEV: Not Included
Published: 20/10/2014 Updated: 21/11/2024
Vulnerability Summary
Status2k allows remote malicious users to obtain configuration information via a phpinfo action in a request to status/index.php, which calls the phpinfo function.
Status2k server monitoring software suffers from cross site scripting, remote command execution, information disclosure, and remote SQL injection vulnerabilities ...