Cleartext Storage of Sensitive Information in Gambio 4.9.2.0 allows attackers to obtain sensitive information via error-handler.log.json and legacy-error-handler.log.txt under the webroot.
The product writes sensitive information to a log file.
Link | Tags |
---|---|
https://herolab.usd.de/security-advisories/usd-2023-0050/ | third party advisory exploit |