PoC Index

CVE-2024-39210

HIGH 7.5EPSS 0.8%

Best House Rental Management System v1.0 was discovered to contain an arbitrary file read vulnerability via the Page parameter at index.php. This vulnerability allows attackers to read arbitrary PHP files and access other sensitive information within the application.

CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v3.1
7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS
0.84% chance of exploitation in the next 30 days, 55th percentile
Published
2024-07-05
Updated
2024-08-02

Proof-of-concept exploits (1)

References

Related