CVE-2025-58581

⚪ Do wiadomości

Ujawnienie pełnego śladu stosu w aplikacji umożliwia atakującemu poznanie technologii i struktury aplikacji.

CVSS
4.3
EPSS
0.3%
Exploit
none
Vendor
sick
Opis źródłowy (NVD)

When an error occurs in the application a full stacktrace is provided to the user. The stacktrace lists class and method names as well as other internal information. An attacker can thus obtain information about the technology used and the structure of the application.

brak Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS4.3
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.3%
Opublikowano (NVD)2025-10-06 07:15:34 UTC
Ostatnia modyfikacja (NVD)2026-10-09 10:10:00 UTC
Referencje