phpinfo() disclosure info

Disclosed: 2021-10-18 19:29:41 By 0xelkomy To deptofdefense
Medium
Vulnerability Details
>>hi security team i found subdoamins avalibale file phpinfo() ##PoC:- https://█████████/phpinfo.php ## Impact An attacker can obtain information such as: •Exact PHP version. •Exact OS and its version. •Details of the PHP configuration. •Internal IP addresses. •Server environment variables. •Loaded PHP extensions and their configurations.
Actions
View on HackerOne
Report Stats
  • Report ID: 804809
  • State: Closed
  • Substate: resolved
  • Upvotes: 15
Share this report