header-logo
Suggest Exploit
vendor:
GreenCMS
by:
vr_system

GreenCMS 2.3.0603 – remote obtain sensitive information

A vulnerability in GreenCMS 2.3.0603 allows an unauthenticated attacker to remotely obtain sensitive information. By sending a specially crafted request to the vulnerable server, an attacker can access the log file which contains sensitive information such as usernames and passwords.

Mitigation:

Upgrade to the latest version of GreenCMS.
Source

Exploit-DB raw data: