ReQuest Serious Play F3 Media Server 7.0.3 Debug Log Disclosure
Posted by deepcore on October 20, 2020 – 4:15 pm
ReQuest Serious Play F3 Media Server version 7.0.3 suffers from a debug log disclosure vulnerability. An unauthenticated attacker can visit the message_log page and disclose the webserver’s Python debug log file containing system information, credentials, paths, processes and command arguments running on the device.
Post a reply
You must be logged in to post a comment.