TROYANOSYVIRUS
Volver a CVEs

CVE-2013-6789

N/A

Descripcion

security/MemberLoginForm.php in SilverStripe 3.0.3 supports credentials in a GET request, which allows remote or local attackers to obtain sensitive information by reading web-server access logs, web-server Referer logs, or the browser history, a similar vulnerability to CVE-2013-2653.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado11/13/2013
Ultima modificacion4/29/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

silverstripe:silverstripe

Debilidades (CWE)

CWE-200

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.