Логотип exploitDog
bind:CVE-2019-25228
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-25228

Количество 2

Количество 2

nvd логотип

CVE-2019-25228

около 2 месяцев назад

An information disclosure vulnerability in Kentico Xperience allows attackers to leak virtual context URLs via the HTTP Referer header when users interact with third-party domains. Sensitive virtual context information can be exposed to external domains through page builder interactions and link/image loading.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-29cc-hw6r-mr24

около 2 месяцев назад

An information disclosure vulnerability in Kentico Xperience allows attackers to leak virtual context URLs via the HTTP Referer header when users interact with third-party domains. Sensitive virtual context information can be exposed to external domains through page builder interactions and link/image loading.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-25228

An information disclosure vulnerability in Kentico Xperience allows attackers to leak virtual context URLs via the HTTP Referer header when users interact with third-party domains. Sensitive virtual context information can be exposed to external domains through page builder interactions and link/image loading.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-29cc-hw6r-mr24

An information disclosure vulnerability in Kentico Xperience allows attackers to leak virtual context URLs via the HTTP Referer header when users interact with third-party domains. Sensitive virtual context information can be exposed to external domains through page builder interactions and link/image loading.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу