2+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.
2 results for "CWE-425"
A CWE-425 “Direct Request ('Forced Browsing')” vulnerability in the “measure” functionality of the web application allows a remote unauthenticated attacker to access confidential measure information. …
A CWE-425 “Direct Request ('Forced Browsing')” vulnerability in the “file_configuration” functionality of the web application allows a remote unauthenticated attacker to access confidential configuration files. …
Free website and port scanning — find vulnerabilities before attackers do.