Geutebrueck re_porter 16 before 7.8.974.20 has a possibility of unauthenticated access to sensitive information including usernames and hashes via a direct request for /statistics/gscsetup.xml on TCP port 12003.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://packetstormsecurity.com/files/149002/Geutebruck-re_porter-16-Credential-Disclosure.html | exploit vdb entry third party advisory |
https://www.exploit-db.com/exploits/45240/ | exploit vdb entry third party advisory |