Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-66f2-2g36-5v6c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that causes a stack error to be shown providing the full file path.

An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that causes a stack error to be shown providing the full file path.

EPSS

Процентиль: 72%
0.00714
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.5
nvd
почти 6 лет назад

An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request that causes a stack error to be shown providing the full file path.

EPSS

Процентиль: 72%
0.00714
Низкий

Дефекты

CWE-200