MegaBIP
cpe:2.3:a:megabip:megabip:*:*:*:*:*:*:*
- < 5.15
A path disclosure vulnerability has been identified in MegaBIP software versions prior to 5.15. During the installation process, users are advised to change the default administrative portal path, as keeping it secret is recommended for protection. However, the publicly available source code of '/registered.php' reveals this path, potentially allowing attackers to conduct further attacks.
Exploitation of this vulnerability could lead to unauthorized access to the administrative portal, allowing attackers to perform actions with administrative privileges.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.