CVE-2021-33558
Boa 0.94.13 allows remote attackers to obtain sensitive information via a misconfiguration involving backup.html, preview.html, js/log.js, log.html, email.html, online-users.html, and config.js. NOTE: multiple third parties report that this is a site-specific issue because those files are not part of Boa.
- Affected products
- Boa
- Boa
- = 0.94.13
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 12.3% (96th percentile)
- NVD status
- Modified
- Published
- 2021-05-27
CVE-2021-33558 at NVD
1 known exploit for CVE-2021-33558
Proof-of-concept code and exploit modules indexed by Sploitus