Incorrect Access Control issue discovered in tpcms 3.2 allows remote attackers to view sensitive information via path in application URL.
References
Link | Resource |
---|---|
https://gitee.com/happy_source/tpcms/issues/I3YNWY | Exploit Third Party Advisory |
https://gitee.com/happy_source/tpcms/issues/I3YNWY | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-02-03 18:15
Updated : 2025-03-26 17:15
NVD link : CVE-2021-36544
Mitre link : CVE-2021-36544
CVE.ORG link : CVE-2021-36544
JSON object : View
Products Affected
tpcms_project
- tpcms
CWE
CWE-532
Insertion of Sensitive Information into Log File