Vulnerability Details CVE-2024-2725
Information exposure vulnerability in the CIGESv2 system. A remote attacker might be able to access /vendor/composer/installed.json and retrieve all installed packages used by the application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.1%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-2725
-
cpe:2.3:a:atisoluciones:ciges:2.0