CVE-2025-56694
5.8MEDIUMClient-side password validation (CWE-602) in lumasoft fotoShare Cloud 2025-03-13 allowing unauthenticated attackers to view password-protected photo albums.
Опубликовано: 8/27/2025Обновлено: 9/9/2025
Описание
Client-side password validation (CWE-602) in lumasoft fotoShare Cloud 2025-03-13 allowing unauthenticated attackers to view password-protected photo albums.
ИИ-АнализНа базе ИИ
Затронутые продукты
lumasoftfotoshare_cloud
2025-03-13
Ссылки
- https://fotoshare.co/Product
- https://inf0sectom.github.io/posts/fotoshareco/ExploitThird Party Advisory
- https://support.lumasoft.co/hc/en-us/articles/360046797573-Event-Privacy-and-Link-SharingProduct