Описание
SQL-Ledger before 2.4.4 stores a password in a query string, which might allow context-dependent attackers to obtain the password via a Referer field or browser history.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| sql-ledger | fixed | 2.4.5-1 | package |
EPSS
Процентиль: 57%
0.00387
Низкий
Связанные уязвимости
ubuntu
около 19 лет назад
SQL-Ledger before 2.4.4 stores a password in a query string, which might allow context-dependent attackers to obtain the password via a Referer field or browser history.
nvd
около 19 лет назад
SQL-Ledger before 2.4.4 stores a password in a query string, which might allow context-dependent attackers to obtain the password via a Referer field or browser history.
github
больше 3 лет назад
SQL-Ledger before 2.4.4 stores a password in a query string, which might allow context-dependent attackers to obtain the password via a Referer field or browser history.
EPSS
Процентиль: 57%
0.00387
Низкий