CVE-2019-20060
10.02.2020, 13:15
MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header. If this leaks, then third parties may discover password-reset hashes, file-delete links, or other sensitive information.Enginsight
Vendor | Product | Version |
---|---|---|
mfscripts | yetishare | 3.5.2 ≤ 𝑥 ≤ 4.5.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration