TPCMS v3.2 allows attackers to access the ThinkPHP log directory and obtain sensitive information such as the administrator's user name and password.
References
Link | Resource |
---|---|
https://gitee.com/happy_source/tpcms/issues/I3YNWY | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2022-04-04 14:15
Updated : 2022-04-12 02:35
NVD link : CVE-2022-27442
Mitre link : CVE-2022-27442
JSON object : View
CWE
CWE-532
Insertion of Sensitive Information into Log File
Products Affected
tpcms_project
- tpcms