CVE-2021-47718

7.5HIGH

OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. Attackers can browse direct

Published: 12/9/2025Updated: 12/19/2025

Description

OpenBMCS 2.4 contains an information disclosure vulnerability that allows unauthenticated attackers to access sensitive files by exploiting directory listing functionality. Attackers can browse directories like /debug/ and /php/ to discover configuration files, database credentials, and system information.

AI AnalysisPowered by AI

Affected Products

openbmcsopenbmcs
2.4

References