Логотип exploitDog
bind:CVE-2022-32984
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-32984

Количество 2

Количество 2

nvd логотип

CVE-2022-32984

около 3 лет назад

BTCPay Server 1.3.0 through 1.5.3 allows a remote attacker to obtain sensitive information when a public Point of Sale app is exposed. The sensitive information, found in the HTML source code, includes the xpub of the store. Also, if the store isn't using the internal lightning node, the credentials of a lightning node are exposed.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-mpjh-c64m-g538

около 3 лет назад

BTCPay Server 1.3.0 through 1.5.3 allows a remote attacker to obtain sensitive information when a public Point of Sale app is exposed. The sensitive information, found in the HTML source code, includes the xpub of the store. Also, if the store isn't using the internal lightning node, the credentials of a lightning node are exposed.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-32984

BTCPay Server 1.3.0 through 1.5.3 allows a remote attacker to obtain sensitive information when a public Point of Sale app is exposed. The sensitive information, found in the HTML source code, includes the xpub of the store. Also, if the store isn't using the internal lightning node, the credentials of a lightning node are exposed.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-mpjh-c64m-g538

BTCPay Server 1.3.0 through 1.5.3 allows a remote attacker to obtain sensitive information when a public Point of Sale app is exposed. The sensitive information, found in the HTML source code, includes the xpub of the store. Also, if the store isn't using the internal lightning node, the credentials of a lightning node are exposed.

CVSS3: 7.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу