CVE-2020-24804

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
11/08/2023
Last modified:
17/08/2023

Description

Plaintext Password vulnerability in AddAdmin.py in cms-dev/cms v1.4.rc1, allows attackers to gain sensitive information via audit logs.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cms-dev:cms:1.4:rc1:*:*:*:*:*:*


References to Advisories, Solutions, and Tools