5
CVSSv2

CVE-2014-2301

Published: 12/05/2014 Updated: 09/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

OrbiTeam BSCW prior to 5.0.8 allows remote malicious users to obtain sensitive metadata via the inf operations (op=inf) to an object in pub/bscw.cgi/.

Vulnerable Product Search on Vulmon Subscribe to Product

bscw bscw

Exploits

RedTeam Pentesting discovered an information disclosure vulnerability in OrbiTeam's BSCW collaboration software An unauthenticated attacker can disclose metadata about internal objects which are stored in BSCW Versions 507 and below are affected ...