ZeroHour

CVE-2020-20472

PoC
CVSS 3.1
5.3 medium
EPSS
1%p72
Published
()
Modified
Description

White Shark System (WSS) 1.3.2 has a sensitive information disclosure vulnerability. The if_get_addbook.php file does not have an authentication operation. Remote attackers can obtain username information for all users of the current site.

Vendors
white shark systems project
Products
white shark systems
Weakness
CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.