CVE-2019-15032
19.09.2019, 17:15
Pydio 6.0.8 mishandles error reporting when a directory allows unauthenticated uploads, and the remote-upload option is used with the http://localhost:22 URL. The attacker can obtain sensitive information such as the name of the user who created that directory and other internal server information.Enginsight
Vendor | Product | Version |
---|---|---|
pydio | pydio | 6.0.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration