CVE-2015-0991Sensitive Information Exposure in Ignition

Severity
5.0MEDIUMNVD
EPSS
0.5%
top 32.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 3
Latest updateMay 17

Description

Inductive Automation Ignition 7.7.2 allows remote attackers to obtain sensitive information by reading an error message about an unhandled exception, as demonstrated by pathname information.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-52q4-cch2-8pvw: Inductive Automation Ignition 72022-05-17
CVEList
CVE-2015-0991: Inductive Automation Ignition 72015-04-03
CVE-2015-0991 — Sensitive Information Exposure | cvebase