an internel important paths disclosure [HtUS]

Disclosed: 2022-09-14 20:54:48 By ahmed0x0mahmoud To deptofdefense
Medium
Vulnerability Details
## Summary: i found CGI script environment variable disclosure an important paths ## Steps To Reproduce: 1. visit this link : https://███ 2. look at poc pic you should restrict this quickly ## Impact this is so dangerous because attacker now know an internal paths and this juicy information as u can see in poc pic he know now the mysql path , openssl config server admin and more ... etc
Actions
View on HackerOne
Report Stats
  • Report ID: 1631471
  • State: Closed
  • Substate: resolved
  • Upvotes: 2
Share this report