Information Disclosure - CVE-2016-2307

 

Information Disclosure - CVE-2016-2307

Published: September 30, 2016 / Updated: September 30, 2016


Vulnerability identifier: #VU687
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2016-2307
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor:
Affected software:

Detailed vulnerability description

The vulnerability allows a remote unathenticated user to obtain potantially sensitive information on the target system.
The weakness is caused by unspecified condition in the affected applications that allows attackers to view arbitrary files on the affected system.
Successful exploitation of the vulnerability may result in potentially sensitive data acess and even futher attacks.

How to mitigate CVE-2016-2307


Sources