Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x5gg-4843-j4xj

Опубликовано: 23 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

This vulnerability exists in Meon KYC solutions due to debug mode is enabled in certain API endpoints. A remote attacker could exploit this vulnerability by accessing certain unauthorized API endpoints leading to detailed error messages as response leading to disclosure of system related information.

This vulnerability exists in Meon KYC solutions due to debug mode is enabled in certain API endpoints. A remote attacker could exploit this vulnerability by accessing certain unauthorized API endpoints leading to detailed error messages as response leading to disclosure of system related information.

EPSS

Процентиль: 52%
0.00286
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-1295

Связанные уязвимости

nvd
10 месяцев назад

This vulnerability exists in Meon KYC solutions due to debug mode is enabled in certain API endpoints. A remote attacker could exploit this vulnerability by accessing certain unauthorized API endpoints leading to detailed error messages as response leading to disclosure of system related information.

CVSS3: 5.3
fstec
10 месяцев назад

Уязвимость программного обеспечения для проверки личности клиентов KYC Solutions, связанная с раскрытием информации в отладочных сообщениях, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 52%
0.00286
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-1295