Sensitive Information Exposure in ATISoluciones CIGES Application
CVE-2025-13596
2.7LOW
What is CVE-2025-13596?
A vulnerability in the ATISoluciones CIGES Application allows for sensitive information exposure through its error handling component. When the application encounters unexpected conditions and generates unhandled exceptions, it may leak detailed error messages and stack traces. These disclosures can reveal critical information such as internal filesystem paths, SQL queries, database connection details, and sensitive environment configurations to unverified external attackers. While this vulnerability facilitates information gathering and reconnaissance, it does not directly compromise system integrity.
Affected Version(s)
CIGES Linux 2.15.0 < 2.15.6
