Missing Custom Error Page in GitHub repository ikus060/rdiffweb prior to 2.4.2.
The product does not return custom error pages to the user, possibly exposing sensitive information.
The product does not handle or incorrectly handles an exceptional condition.
Link | Tags |
---|---|
https://huntr.dev/bounties/c40badc3-c9e7-4b69-9e2e-2b9f05865159 | exploit third party advisory patch |
https://github.com/ikus060/rdiffweb/commit/233befc33bdc45d4838c773d5aed4408720504c5 | third party advisory patch |