Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mw6g-jfc3-6x9v

Опубликовано: 17 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter.

Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter.

EPSS

Процентиль: 23%
0.00079
Низкий

5 Medium

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 5
nvd
больше 2 лет назад

Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter.

EPSS

Процентиль: 23%
0.00079
Низкий

5 Medium

CVSS3

Дефекты

CWE-497