vendor:
Fusion Digital Signage
by:
LiquidWorm
7.5
CVSS
HIGH
Database Backup Disclosure
N/A
CWE
Product Name: Fusion Digital Signage
Affected Version From: 3.4.8 (1.0.36274)
Affected Version To: 3.4.8 (1.0.36274)
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Apache 2.2.34, PHP/5.3.18-2, Linux 2.6.10
2020
SpinetiX Fusion Digital Signage 3.4.8 – Database Backup Disclosure
The application is vulnerable to unauthenticated database download and information disclosure vulnerability. This can enable an attacker to disclose sensitive information resulting in authentication bypass, session hijacking and full system control.
Mitigation:
N/A