CVE-2023-1858

MEDIUM

SourceCodester Earnings and Expense Tracker App 1.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

A vulnerability was found in SourceCodester Earnings and Expense Tracker App 1.0. It has been classified as problematic. This affects an unknown part of the file index.php. The manipulation of the argument page leads to information disclosure. It is possible to initiate the attack remotely. The identifier VDB-224997 was assigned to this vulnerability.

References (2)

Core 2
Core References
Permissions Required, Third Party Advisory, VDB Entry vdb-entry technical-description
https://vuldb.com/?id.224997
Permissions Required, Third Party Advisory, VDB Entry signature
https://vuldb.com/?ctiid.224997

Scores

CVSS v3 4.3
EPSS 0.0058
EPSS Percentile 43.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Details

CWE
CWE-200
Status published
Products (1)
earnings_and_expense_tracker_app_project/earnings_and_expense_tracker_app 1.0
Published Apr 05, 2023
Tracked Since Feb 18, 2026