Описание
MailPost 5.1.1sv, and possibly earlier versions, displays a different error message depending on whether the requested file exists or not, which allows remote attackers to gain sensitive information.
Ссылки
- Third Party AdvisoryUS Government Resource
- ExploitVendor Advisory
- Third Party AdvisoryUS Government Resource
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:tips:mailpost:5.1.1_sv:*:*:*:*:*:*:*
EPSS
Процентиль: 91%
0.07089
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
MailPost 5.1.1sv, and possibly earlier versions, displays a different error message depending on whether the requested file exists or not, which allows remote attackers to gain sensitive information.
EPSS
Процентиль: 91%
0.07089
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other