Headline
CVE-2020-18127: There is a insecure permission so that we can read any file we want,include config.php · Issue #22 · Indexhibit/indexhibit
An issue in the /config/config.php component of Indexhibit 2.1.5 allows attackers to arbitrarily view files.
i have fixed this issue. are you going to upload one thing every day? every night i get another note - i can’t sleep. i’m going on vacation tomorrow. can’t you just send me a note with everything so i can do it all at once? posting like this to github, and i don’t mind if people claim i don’t know how github works, is creating a map for future hackers. unfortunately, there are people who don’t update their sites for 10 years now…i can’t control this. you can send me a note directly at [email protected] mailto:[email protected] thanks
…