Описание
There exists an information disclosure vulnerability in SmartBear Zephyr Enterprise through 7.15.0 that could be exploited by unauthenticated users to read arbitrary files from Zephyr instances.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.15 (включая)
cpe:2.3:a:smartbear:zephyr_enterprise:*:*:*:*:*:*:*:*
EPSS
Процентиль: 51%
0.00284
Низкий
7.5 High
CVSS3
Дефекты
CWE-668
CWE-668
Связанные уязвимости
CVSS3: 7.5
github
почти 3 года назад
There exists an information disclosure vulnerability in SmartBear Zephyr Enterprise through 7.15.0 that could be exploited by unauthenticated users to read arbitrary files from Zephyr instances.
EPSS
Процентиль: 51%
0.00284
Низкий
7.5 High
CVSS3
Дефекты
CWE-668
CWE-668