Логотип exploitDog
bind:CVE-2018-7272
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-7272

Количество 2

Количество 2

nvd логотип

CVE-2018-7272

почти 8 лет назад

The REST APIs in ForgeRock AM before 5.5.0 include SSOToken IDs as part of the URL, which allows attackers to obtain sensitive information by finding an ID value in a log file.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-9xmg-qx66-c5gw

больше 3 лет назад

The REST APIs in ForgeRock AM before 5.5.0 include SSOToken IDs as part of the URL, which allows attackers to obtain sensitive information by finding an ID value in a log file.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-7272

The REST APIs in ForgeRock AM before 5.5.0 include SSOToken IDs as part of the URL, which allows attackers to obtain sensitive information by finding an ID value in a log file.

CVSS3: 6.5
0%
Низкий
почти 8 лет назад
github логотип
GHSA-9xmg-qx66-c5gw

The REST APIs in ForgeRock AM before 5.5.0 include SSOToken IDs as part of the URL, which allows attackers to obtain sensitive information by finding an ID value in a log file.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу