Leak of Internal IP addresses
Low
T
Trint Ltd
Submitted None
Actions:
Reported by
rook1337
Vulnerability Details
Technical details and impact analysis
## Summary:
The leak of Internal IP Addresses.
IP Addresses:-
10.6.96.4
10.6.136.194
10.6.127.182
### Assessment:
[add your assessment of the vulnerability]
## Steps To Reproduce:
1. Open request page of (graphql2.trint.com) with "getUser" Operation name.
2. Remove "authorization: Bearer" line and error will raise.
3. You can see ("ip":"::ffff:10.6.127.182) and ("data":{"user":null}) in error.
It is happening only on "getUser" operation name.
## Supporting Material/References:
[list any additional material (e.g. screenshots, logs, etc.)]
* [attachment / reference]
F555596
## Impact
The leak of Internal IP Addresses will allow the attacker to get more information about the server.
Report Details
Additional information and metadata
State
Closed
Substate
Resolved