An information disclosure vulnerability in Phloc Webscopes 7.0.0 allows local attackers with access to the log files to view logged HTTP requests that contain user passwords or other sensitive information.
History

Wed, 18 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Phloc
Phloc webscopes
CPEs cpe:2.3:a:phloc:webscopes:7.0.0:*:*:*:*:*:*:*
Vendors & Products Phloc
Phloc webscopes
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Sonatype

Published: 2024-06-25T21:36:33.840Z

Updated: 2024-09-18T15:47:18.064Z

Reserved: 2024-06-17T13:21:32.314Z

Link: CVE-2024-6060

cve-icon Vulnrichment

Updated: 2024-08-01T21:25:03.240Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-25T22:15:35.347

Modified: 2024-06-26T15:15:20.570

Link: CVE-2024-6060

cve-icon Redhat

No data.