Sensitive Information Exposure in Lexiglot by Piwigo
CVE-2014-8940
5.3MEDIUM
What is CVE-2014-8940?
Lexiglot software versions up to November 20, 2014, contain a vulnerability that permits remote attackers to access sensitive information, including project names and details, simply by navigating to the /update.log URI. This exposure can potentially lead to further exploitation due to the information disclosed, emphasizing the need for prompt remediation to protect user data.