CVE-2023-48122

An issue in microweber v.2.0.1 and fixed in v.2.0.4 allows a remote attacker to obtain sensitive information via the HTTP GET method.
Configurations

Configuration 1 (hide)

cpe:2.3:a:microweber:microweber:*:*:*:*:*:*:*:*

History

11 Dec 2023, 19:08

Type Values Removed Values Added
References () https://gist.github.com/grozdniyandy/1847ad48126d6bba39bdeb49114bc300 - () https://gist.github.com/grozdniyandy/1847ad48126d6bba39bdeb49114bc300 - Third Party Advisory
References () https://github.com/microweber/microweber/issues/1042 - () https://github.com/microweber/microweber/issues/1042 - Exploit, Issue Tracking
Summary
  • (es) Un problema en Microweber v.2.0.1 y solucionado en v.2.0.4 permite a un atacante remoto obtener información confidencial a través del método HTTP GET.
First Time Microweber
Microweber microweber
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CPE cpe:2.3:a:microweber:microweber:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

08 Dec 2023, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-08 04:15

Updated : 2023-12-11 19:08


NVD link : CVE-2023-48122

Mitre link : CVE-2023-48122

CVE.ORG link : CVE-2023-48122


JSON object : View

Products Affected

microweber

  • microweber