| |
Vulnerability CVE-2024-2725
Published: 2024-03-22
Description: |
Information exposure vulnerability in the CIGESv2 system. A remote attacker might be able to access /vendor/composer/installed.json and retrieve all installed packages used by the application. |
Type:
CWE-200 (Information Exposure)
References: |
https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-cigesv2-system
|
|
|
Copyright 2024, cxsecurity.com
|
|
|