TROYANOSYVIRUS
Back to CVEs

CVE-2013-6789

N/A

Description

security/MemberLoginForm.php in SilverStripe 3.0.3 supports credentials in a GET request, which allows remote or local attackers to obtain sensitive information by reading web-server access logs, web-server Referer logs, or the browser history, a similar vulnerability to CVE-2013-2653.

CVE Details

CVSS v3.1 ScoreN/A
Published11/13/2013
Last Modified4/29/2026
Sourcenvd
Honeypot Sightings0

Affected Products

silverstripe:silverstripe

Weaknesses (CWE)

CWE-200

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.