← Back

CVE-2022-45895

nvd nist
Published: Dec 25, 2022Modified: Apr 14, 2025

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Planet eStream before 6.72.10.07 discloses sensitive information, related to the ON cookie (findable in HTML source code for Default.aspx in some situations) and the WhoAmI endpoint (e.g., path disclosure).

Affected (1)

1 product
Planet Estream
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 6.72.10.07

Timeline

No history available yet.