Pydio 6.0.8 mishandles error... CVE-2019-15032

5.0 AV AC AU C I A
发布: 2019-09-19
修订: 2019-09-19

Pydio 6.0.8 mishandles error reporting when a directory allows unauthenticated uploads, and the remote-upload option is used with the http://localhost:22 URL. The attacker can obtain sensitive information such as the name of the user who created that directory and other internal server information.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息