TROYANOSYVIRUS
Voltar para CVEs

CVE-2013-6789

N/A

Descricao

security/MemberLoginForm.php in SilverStripe 3.0.3 supports credentials in a GET request, which allows remote or local attackers to obtain sensitive information by reading web-server access logs, web-server Referer logs, or the browser history, a similar vulnerability to CVE-2013-2653.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado11/13/2013
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

silverstripe:silverstripe

Fraquezas (CWE)

CWE-200

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.