CVE-2019-9734

HIGH

Aquarius CMS <4.3.5 - Info Disclosure

Title source: llm
STIX 2.1

Description

Aquarius CMS through 4.3.5 writes POST and GET parameters (including passwords) to a log file due to an overwriting of configuration parameters under certain circumstances.

Scores

CVSS v3 7.5
EPSS 0.0032
EPSS Percentile 54.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-532
Status published
Products (1)
aquaverde/aquarius_cms < 4.3.5
Published Apr 24, 2019
Tracked Since Feb 18, 2026