Update CVE-2021-20114.yaml

patch-1
Prince Chaddha 2021-09-06 17:48:01 +05:30 committed by GitHub
parent e1ab21616f
commit 54e5eea581
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 1 additions and 1 deletions

View File

@ -2,7 +2,7 @@ id: CVE-2021-20114
info: info:
name: TCExam <= 14.8.1 Exposure of Sensitive Information to an Unauthorized Actor name: TCExam <= 14.8.1 Exposure of Sensitive Information to an Unauthorized Actor
author: n/a author: push4d
severity: high severity: high
description: When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files. description: When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files.
reference: reference: