CVE-2020-15235
05.10.2020, 16:15
In RACTF before commit f3dc89b, unauthenticated users are able to get the value of sensitive config keys that would normally be hidden to everyone except admins. All versions after commit f3dc89b9f6ab1544a289b3efc06699b13d63e0bd(3/10/20) are patched.Enginsight
Vendor | Product | Version |
---|---|---|
ractf | core | 𝑥 ≤ 41edf92 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References