What the vulnerability does
01Description
Insertion of Sensitive Information into Log File vulnerability in Tribulant Slideshow Gallery.This issue affects Slideshow Gallery: from n/a through 1.7.8.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
What the vulnerability does
Insertion of Sensitive Information into Log File vulnerability in Tribulant Slideshow Gallery.This issue affects Slideshow Gallery: from n/a through 1.7.8.
Explanation of Vulnerability in Simple Terms
Slideshow Gallery through version 1.7.8 exposes sensitive information in log files or error messages. An attacker on the network can read this data without authentication or user interaction. The exposure is limited to confidentiality; the vulnerability does not allow modification or deletion of data.
What an attacker can do
Read sensitive information exposed in logs or error messages without authentication.
Potential impact on your site
Sensitive data may be exposed to unauthenticated attackers, potentially including configuration details or user information.
Conditions required to exploit
Network access to the affected site; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities