A vulnerability exists in Hoosk 1.8.0 in /install/index.php, due to a failure to check if config.php already exists in the root directory, which could let a malicious user reinstall the website.
References
Link | Resource |
---|---|
https://github.com/kr0za/bugs/issues/1 | Exploit Third Party Advisory |
Configurations
Information
Published : 2022-03-31 12:15
Updated : 2022-04-11 13:12
NVD link : CVE-2021-43478
Mitre link : CVE-2021-43478
JSON object : View
CWE
Products Affected
hoosk
- hoosk