Lucene search

K
githubexploit3B5149CD-0000-5817-AEDD-C14A111B4794
HistoryApr 24, 2023 - 11:26 p.m.

Exploit for Cleartext Storage of Sensitive Information in Strapi

2023-04-2423:26:13
34
cleartext storage
sensitive information
unauthenticated exploit
strapi filtering
remote code execution
python
requests library
vulnerable strapi instance
password reset token
educational
research purposes

4.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

8 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

51.3%

Unauthenticated Strapi Exploit: CVE-2023-22894

This repositor…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

4.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

8 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

51.3%

Related for 3B5149CD-0000-5817-AEDD-C14A111B4794