Medium
CVSS 5.0
Overview
BadBlue 2.4 allows remote attackers to obtain the location of the server installation path via a request for phptest.php, which includes the pathname in the source of the resulting HTML.
BadBlue 2.4 allows remote attackers to obtain the location of the server install...
BadBlue 2.4 allows remote attackers to obtain the location of the server installation path via a request for phptest.php, which includes the pathname in the source of the resulting HTML.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: