vendor:
Academic Timetable Final Build
by:
Ihsan Sencan
3.3
CVSS
MEDIUM
User Information Disclosure
200
CWE
Product Name: Academic Timetable Final Build
Affected Version From: 7.0a
Affected Version To: 7.0b
Patch Exists: NO
Related CWE: N/A
CPE: a:geoffpartridge:academic_timetable_final_build
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: WiN7_x64/KaLiLinuX_x64
2018
Academic Timetable Final Build 7.0a-7.0b – User Information Disclosure
A vulnerability in Academic Timetable Final Build 7.0a-7.0b allows an attacker to view user information such as usernames, passwords, and roles.
Mitigation:
Ensure that user information is not disclosed to unauthorized users.