Summary #

Invicti detected Mint, a web-based statistics software.

This information can help an attacker gain a greater understanding of the systems in use and potentially develop further attacks.

Impact #
An attacker can search for specific security vulnerabilities for the version of Mint identified. More importantly, Mint discloses too much information about hidden pages (config, administration etc.).
Remediation #
Configure your web server to prevent information leakage from the Mint directory by implementing access control mechanisms to stop public access.
Classifications #
CAPEC-224; CWE-205; ISO27001-A.14.2.5; WASC-45; OWASP PC-C7; OWASP 2017-A6
Vulnerability Index

Vulnerability Index

You can search and find all vulnerabilities


Search Vulnerability


Dead accurate, fast & easy-to-use Web Application Security Scanner

Get a demo