7.5
CVSSv3

CVE-2020-23284

Published: 20/07/2021 Updated: 31/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Information disclosure in aspx pages in MV's IDCE application v1.0 allows an malicious user to copy and paste aspx pages in the end of the URL application that connect into the database which reveals internal and sensitive information without logging into the web application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mv idce 1.0