CVE-2024-8571

LOW

erjemin roll_cms - Information Exposure Through Error Message in views.py

Title source: llm
STIX 2.1

Description

A vulnerability was found in erjemin roll_cms up to 1484fe2c4e0805946a7bcf46218509fcb34883a9. It has been classified as problematic. This affects an unknown part of the file roll_cms/roll_cms/views.py. The manipulation leads to information exposure through error message. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry
https://vuldb.com/?id.276801
Permissions Required signature permissions-required
https://vuldb.com/?ctiid.276801
Third Party Advisory, VDB Entry third-party-advisory
https://vuldb.com/?submit.400796
Issue Tracking issue-tracking
https://github.com/erjemin/roll_cms/issues/1

Scores

CVSS v3 3.5
EPSS 0.0044
EPSS Percentile 35.2%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-209
Status published
Products (1)
erjemin/roll_cms < 2024-08-31
Published Sep 08, 2024
Tracked Since Feb 18, 2026