vendor:
Easy File Sharing Web Server
by:
none
3.3
CVSS
LOW
Information Disclosure
200
CWE
Product Name: Easy File Sharing Web Server
Affected Version From: none
Affected Version To: none
Patch Exists: NO
Related CWE: none
CPE: none
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: none
2003
Easy File Sharing Web Server Information Disclosure Vulnerability
Easy File Sharing Web Server has been reported prone to an information disclosure vulnerability. The issue presents itself due to insecure default permissions set on folders that contain Easy File Sharing Web Server log and configuration files. It has been reported that a remote attacker may make a HTTP request for affected log and configuration files and disclose potentially sensitive information contained therein.
Mitigation:
Ensure that the default permissions set on folders that contain Easy File Sharing Web Server log and configuration files are secure.