CVE-2019-20060
EUVD-2019-1061610.02.2020, 13:15
MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third parties may discover password-reset hashes, file-delete links, or other sensitive information.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mfscripts | yetishare | 3.5.2 ≤ 𝑥 ≤ 4.5.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration