Impact
A flaw in the DownloadPublic endpoint of sdcb Chats allows any user to retrieve files without authentication, resulting in an authentication failure and missing authentication weakness. The vulnerability permits remote attackers to access confidential documents and may compromise confidentiality, integrity, or availability if the files contain sensitive data. The flaw is categorized as CWE‑287 and CWE‑306.
Affected Systems
sdcb Chats versions up to and including 1.12.0 are affected; all earlier releases remain vulnerable unless a patch is applied.
Risk and Exploitability
The CVSS score of 6.3 indicates moderate severity, and while the EPSS score is not available, the issue is not listed in CISA KEV. The vendor has not released a fix, and the vulnerability has been published, so the risk of exploitation remains significant. The attack vector is likely a public HTTP request to the DownloadPublic endpoint, and though the complexity is rated high and exploitability difficult, the possibility of remote exploitation persists.
OpenCVE Enrichment