An issue was discovered in Rawchen blog-ssm v1.0 allows an attacker to obtain sensitive user information by bypassing permission checks via the /adminGetUserList component.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Blog-ssm |
Blog-ssm_project |
1.0 (including) |
1.0 (including) |
References