Able to view Backend Database dur to improper authentication
Medium
U
U.S. Dept Of Defense
Submitted None
Actions:
Reported by
nobody_cares_
Vulnerability Details
Technical details and impact analysis
Vulnerable domain: https://█████████
Endpoint: https://█████████/schema/columns.byTable.html
Description:
When you visit the above endpoint you will get all the backend database. Its a critical vulnerability and should be patch as soon as possible.
Let me know if you want any more details.
FInd the POCs:
Thanks.
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Improper Access Control - Generic