Information Exposure Through an Error Message in WeGIA - #VU127884
Published: April 25, 2026
WeGIA
Detailed vulnerability description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to improper error handling in familiar_docfamiliar.php when handling requests to the affected URL. A remote attacker can access the endpoint and trigger an overly descriptive error message to disclose sensitive information.
The exposed error message may include database-related details that can help map backend infrastructure and refine further attacks.