PT-2022-24792 · Unknown · Webvendome

Published

2022-11-17

·

Updated

2025-04-28

·

CVE-2022-39178

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Webvendome (affected versions not specified)
Description The issue concerns an internal server IP disclosure in Webvendome. It can be triggered by sending a GET request to a specific endpoint, although the exact endpoint is not specified in the provided information. This results in the disclosure of the internal server IP and full path.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2022-39178

Affected Products

Webvendome