CVE-2022-45895

Planet eStream before 6.72.10.07 discloses sensitive information, related to the ON cookie (findable in HTML source code for Default.aspx in some situations) and the WhoAmI endpoint (e.g., path disclosure).
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:planetestream:planet_estream:*:*:*:*:*:*:*:*

Information

Published : 2022-12-24 21:15

Updated : 2023-01-04 10:52


NVD link : CVE-2022-45895

Mitre link : CVE-2022-45895


JSON object : View

CWE
CWE-668

Exposure of Resource to Wrong Sphere

Advertisement

dedicated server usa

Products Affected

planetestream

  • planet_estream