9.8
CVSSv3

CVE-2018-12908

Published: 27/06/2018 Updated: 27/08/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Brynamics "Online Trade - Online trading and cryptocurrency investment system" allows remote malicious users to obtain sensitive information via a direct request for the /dashboard/deposit URI, as demonstrated by discovering database credentials.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

brynamics brynamics -

Exploits

# Exploit Title: Online Trade 1 - Information Disclosure # Date: 2018-07-03 # Exploit Author: L0RD # Vendor Homepage: codecanyonnet/item/online-trade-online-forex-and-cryptocurrency-investment-system/21987193?s_rank=14 # CVE: CVE-2018-12908 # Version: 1 # Tested on: Win 10 ======================================= # Description : Online trad ...
Online Trade version 1 suffers from an information leakage vulnerability ...