Описание
The vulnerability allows unauthenticated users to download a file containing session ID data by directly accessing the "/cgi-bin/CliniNET.prd/utils/userlogxls.pl" endpoint.
EPSS
Процентиль: 17%
0.00053
Низкий
Дефекты
CWE-306
Связанные уязвимости
github
5 месяцев назад
The vulnerability allows unauthenticated users to download a file containing session ID data by directly accessing the "/cgi-bin/CliniNET.prd/utils/userlogxls.pl" endpoint.
EPSS
Процентиль: 17%
0.00053
Низкий
Дефекты
CWE-306