Information exposure vulnerability in IBERMATICA RPS 2019...
High severity
Unreviewed
Published
Oct 3, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Oct 3, 2023
Published to the GitHub Advisory Database
Oct 3, 2023
Last updated
Apr 4, 2024
Information exposure vulnerability in IBERMATICA RPS 2019, which exploitation could allow an unauthenticated user to retrieve sensitive information, such as usernames, IP addresses or SQL queries sent to the application. By accessing the URL /RPS2019Service/status.html, the application enables the logging mechanism by generating the log file, which can be downloaded.
References