First published: Tue Mar 13 2018(Updated: )
Ajenti version version 2 contains a Improper Error Handling vulnerability in Login JSON request that can result in The requisition leaks a path of the server. This attack appear to be exploitable via By sending a malformed JSON, the tool responds with a traceback error that leaks a path of the server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mentiss Acgv Acgvannu | =2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1000083 is considered a medium severity vulnerability due to its improper error handling allowing path leakage.
To fix CVE-2018-1000083, update Ajenti to the latest version where the error handling vulnerabilities have been resolved.
CVE-2018-1000083 is an improper error handling vulnerability affecting the Login JSON request in Ajenti version 2.
CVE-2018-1000083 can be exploited by sending a malformed JSON to the server, which may leak server path information.
CVE-2018-1000083 specifically affects Ajenti version 2.