GMOD Apollo Local Path Information Disclosure Vulnerability

Vulnerability

A vulnerability in GMOD Apollo prior to version 2.8.0 allows for local path information disclosure. This occurs after an unsuccessful attempt to upload a file that does not meet the application's requirements. The response from the server includes sensitive local path information, which could be exploited by an attacker.

Impact

Exploitation of this vulnerability leads to unauthorized disclosure of local path information on the server.

Remediation

Users are advised to update GMOD Apollo to version 2.8.0 or later.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
8.1
remediation
7.7
relevance
0.0
threat
3.2
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.