mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-11 08:27:12 +02:00
756 B
756 B
CVE-2018-14907
Description
The Web server in 3CX version 15.5.8801.3 is vulnerable to Information Leakage, because of improper error handling in Stack traces, as demonstrated by discovering a full pathname.
POC
Reference
- https://medium.com/stolabs/security-issues-on-3cx-web-service-d9dc7f1bea79
- https://medium.com/stolabs/security-issues-on-3cx-web-service-d9dc7f1bea79