Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fm3j-ghgj-fhvx

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Websense TRITON AP-WEB before 8.0.0 does not properly restrict access to files in explorer_wse/, which allows remote attackers to obtain sensitive information via a direct request to a (1) Web Security incident report or the (2) Explorer configuration (websense.ini) file.

Websense TRITON AP-WEB before 8.0.0 does not properly restrict access to files in explorer_wse/, which allows remote attackers to obtain sensitive information via a direct request to a (1) Web Security incident report or the (2) Explorer configuration (websense.ini) file.

EPSS

Процентиль: 63%
0.00441
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 11 лет назад

Websense TRITON AP-WEB before 8.0.0 does not properly restrict access to files in explorer_wse/, which allows remote attackers to obtain sensitive information via a direct request to a (1) Web Security incident report or the (2) Explorer configuration (websense.ini) file.

EPSS

Процентиль: 63%
0.00441
Низкий

Дефекты

CWE-200