Matera Banco 1.0.0 mishandles Java errors in the backend, as demonstrated by a stack trace revealing use of net.sf.acegisecurity components.
The product generates an error message that includes sensitive information about its environment, users, or associated data.
Link | Tags |
---|---|
https://medium.com/stolabs/security-issues-on-matera-systems-fba14d207dc9 | not applicable |
https://exchange.xforce.ibmcloud.com/vulnerabilities/147964 | third party advisory |