Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33093
HistoryNov 25, 2021 - 6:48 a.m.

Information Disclosure

2021-11-2506:48:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.002 Low

EPSS

Percentile

52.9%

concrete5/concrete5 is vulnerable to information disclosure. The vulnerability exists due to an insecure indirect object reference, allowing an attacker to access restricted files by attaching a message to the conversation.

0.002 Low

EPSS

Percentile

52.9%