Mahara 15.04 before 15.04.9 and 15.10 before 15.10.5 and 16.04 before 16.04.3 are vulnerable to passwords or other sensitive information being passed by unusual parameters to end up in an error log.
References
Link | Resource |
---|---|
https://bugs.launchpad.net/mahara/+bug/1570221 | Issue Tracking Patch Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2017-11-03 11:29
Updated : 2017-11-13 07:53
NVD link : CVE-2017-1000151
Mitre link : CVE-2017-1000151
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
mahara
- mahara