Description
An issue was discovered in Chadha PHPKB 9.0 Enterprise Edition. installer/test-connection.php (part of the installation process) allows a remote unauthenticated attacker to disclose local files on hosts running PHP before 7.2.16, or on hosts where the MySQL ALLOW LOCAL DATA INFILE option is enabled.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T11:35:13.102Z
Reserved: 2020-04-06T00:00:00.000Z
Link: CVE-2020-11579
No data.
Status : Modified
Published: 2020-09-03T18:15:12.707
Modified: 2024-11-21T04:58:09.920
Link: CVE-2020-11579
No data.
OpenCVE Enrichment
No data.
Weaknesses