Логотип exploitDog
bind:CVE-2020-10096
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-10096

Количество 3

Количество 3

nvd логотип

CVE-2020-10096

почти 6 лет назад

An issue was discovered in Zammad 3.0 through 3.2. It does not prevent caching of confidential data within browser memory. An attacker who either remotely compromises or obtains physical access to a user's workstation can browse the browser cache contents and obtain sensitive information. The attacker does not need to be authenticated with the application to view this information, as it would be available via the browser cache.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2020-10096

почти 6 лет назад

An issue was discovered in Zammad 3.0 through 3.2. It does not prevent ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-q5w8-77gv-454j

больше 3 лет назад

An issue was discovered in Zammad 3.0 through 3.2. It does not prevent caching of confidential data within browser memory. An attacker who either remotely compromises or obtains physical access to a user's workstation can browse the browser cache contents and obtain sensitive information. The attacker does not need to be authenticated with the application to view this information, as it would be available via the browser cache.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-10096

An issue was discovered in Zammad 3.0 through 3.2. It does not prevent caching of confidential data within browser memory. An attacker who either remotely compromises or obtains physical access to a user's workstation can browse the browser cache contents and obtain sensitive information. The attacker does not need to be authenticated with the application to view this information, as it would be available via the browser cache.

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-10096

An issue was discovered in Zammad 3.0 through 3.2. It does not prevent ...

CVSS3: 7.5
0%
Низкий
почти 6 лет назад
github логотип
GHSA-q5w8-77gv-454j

An issue was discovered in Zammad 3.0 through 3.2. It does not prevent caching of confidential data within browser memory. An attacker who either remotely compromises or obtains physical access to a user's workstation can browse the browser cache contents and obtain sensitive information. The attacker does not need to be authenticated with the application to view this information, as it would be available via the browser cache.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу