Exposed .bash_history at http://21days2017.mtncameroon.net/.bash_history

Disclosed: 2022-03-20 05:31:11 By xlife To mtn_group
Medium
Vulnerability Details
## Summary: Dear Security Team, I found some dangerous urls on your servers that reveal important informations about the servers configuration themself and that are very interesting from a hacker point of view. ## Steps To Reproduce: http://21days2017.mtncameroon.net/.bash_history ##Remediation * disable that kind of function on production server * protect them with strong credentials * use ip restriction Best regards, Vishu10x00 ❤️ ## Impact While this does not represent a real security issue, this reveal important informations about your system and could be used by a malicious user for a future attack.
Actions
View on HackerOne
Report Stats
  • Report ID: 801437
  • State: Closed
  • Substate: resolved
  • Upvotes: 7
Share this report