CVE-2023-4168
Templatecookie Adlisting Redirect ad-list information disclosure
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
A vulnerability was found in Templatecookie Adlisting 2.14.0. It has been classified as problematic. Affected is an unknown function of the file /ad-list of the component Redirect Handler. The manipulation leads to information disclosure. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-236184. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Es wurde eine problematische Schwachstelle in Templatecookie Adlisting 2.14.0 ausgemacht. Betroffen hiervon ist ein unbekannter Ablauf der Datei /ad-list der Komponente Redirect Handler. Durch die Manipulation mit unbekannten Daten kann eine information disclosure-Schwachstelle ausgenutzt werden. Umgesetzt werden kann der Angriff über das Netzwerk.
Adlisting Classified Ads version 2.14.0 suffers from an information leakage vulnerability.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-08-04 CVE Reserved
- 2023-08-05 CVE Published
- 2023-08-08 First Exploit
- 2024-08-02 CVE Updated
- 2024-10-27 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://vuldb.com/?id.236184 | Technical Description |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/51667 | 2023-08-08 | |
http://packetstormsecurity.com/files/174015/Adlisting-Classified-Ads-2.14.0-Information-Disclosure.html | 2024-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Templatecookie Search vendor "Templatecookie" | Adlisting Search vendor "Templatecookie" for product "Adlisting" | 2.14.0 Search vendor "Templatecookie" for product "Adlisting" and version "2.14.0" | - |
Affected
|