CVE-2024-39210
HIGH 7.5EPSS 0.8%
Best House Rental Management System v1.0 was discovered to contain an arbitrary file read vulnerability via the Page parameter at index.php. This vulnerability allows attackers to read arbitrary PHP files and access other sensitive information within the application.
- CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - EPSS
- 0.84% chance of exploitation in the next 30 days, 55th percentile
- Published
- 2024-07-05
- Updated
- 2024-08-02
Proof-of-concept exploits (1)
- KRookieSec/CVE-2024-392101★ · 2024-07-05