VDB
Sign up
—

PYSEC-2018-112

Details

Ajenti version version 2 contains a Improper Error Handling vulnerability in Login JSON request that can result in The requisition leaks a path of the server. This attack appear to be exploitable via By sending a malformed JSON, the tool responds with a traceback error that leaks a path of the server.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/ajenti-panel
Introduced in: 0

No fixed version published yet for ajenti-panel (pip). Pin to a known-safe version or switch to an alternative.

References