Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34312
HistoryFeb 21, 2022 - 6:42 a.m.

Information Disclosure

2022-02-2106:42:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.006 Low

EPSS

Percentile

78.3%

microweber is vulnerable to information disclosure. Sensitive information are leaked via a 500 error message when a user enters anything in search= parameter as in https://demo.microweber.org/demo/admin/view:modules/load_module:comments#search= .

0.006 Low

EPSS

Percentile

78.3%